Improper Authorization in RTU500 Web Application from Hitachi Energy
CVE-2026-8067
6.5MEDIUM
What is CVE-2026-8067?
An improper authorization issue in the RTU500's web application enables authenticated users to exploit the reset endpoint, allowing them to initiate a reboot of the device. This can lead to temporary unavailability and disrupt the normal operations of the RTU500, affecting system performance and reliability.
Affected Version(s)
RTU500 series CMU firmware 9.0 < 12.0