// For flags

CVE-2023-4518

 

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A vulnerability exists in the input validation of the GOOSE
messages where out of range values received and processed
by the IED caused a reboot of the device. In order for an
attacker to exploit the vulnerability, goose receiving blocks need
to be configured.

Existe una vulnerabilidad en la validaciĆ³n de entrada de los mensajes GOOSE donde los valores fuera de rango recibidos y procesados por el IED provocaron un reinicio del dispositivo. Para que un atacante aproveche la vulnerabilidad, es necesario configurar los bloques receptores de ganso.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Adjacent
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2023-08-24 CVE Reserved
  • 2023-12-01 CVE Published
  • 2024-09-23 CVE Updated
  • 2024-10-31 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-20: Improper Input Validation
  • CWE-1284: Improper Validation of Specified Quantity in Input
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Hitachienergy
Search vendor "Hitachienergy"
Relion 670 Firmware
Search vendor "Hitachienergy" for product "Relion 670 Firmware"
>= 2.2.0 < 2.2.2.6
Search vendor "Hitachienergy" for product "Relion 670 Firmware" and version " >= 2.2.0 < 2.2.2.6"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion 670
Search vendor "Hitachienergy" for product "Relion 670"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion 670 Firmware
Search vendor "Hitachienergy" for product "Relion 670 Firmware"
>= 2.2.3 < 2.2.3.7
Search vendor "Hitachienergy" for product "Relion 670 Firmware" and version " >= 2.2.3 < 2.2.3.7"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion 670
Search vendor "Hitachienergy" for product "Relion 670"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion 670 Firmware
Search vendor "Hitachienergy" for product "Relion 670 Firmware"
>= 2.2.4 < 2.2.4.4
Search vendor "Hitachienergy" for product "Relion 670 Firmware" and version " >= 2.2.4 < 2.2.4.4"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion 670
Search vendor "Hitachienergy" for product "Relion 670"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion 670 Firmware
Search vendor "Hitachienergy" for product "Relion 670 Firmware"
>= 2.2.5 < 2.2.5.6
Search vendor "Hitachienergy" for product "Relion 670 Firmware" and version " >= 2.2.5 < 2.2.5.6"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion 670
Search vendor "Hitachienergy" for product "Relion 670"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion 650 Firmware
Search vendor "Hitachienergy" for product "Relion 650 Firmware"
>= 2.2.4 < 2.2.4.4
Search vendor "Hitachienergy" for product "Relion 650 Firmware" and version " >= 2.2.4 < 2.2.4.4"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion 650
Search vendor "Hitachienergy" for product "Relion 650"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion 650 Firmware
Search vendor "Hitachienergy" for product "Relion 650 Firmware"
>= 2.2.5 < 2.2.5.6
Search vendor "Hitachienergy" for product "Relion 650 Firmware" and version " >= 2.2.5 < 2.2.5.6"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion 650
Search vendor "Hitachienergy" for product "Relion 650"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion 650 Firmware
Search vendor "Hitachienergy" for product "Relion 650 Firmware"
2.2.1
Search vendor "Hitachienergy" for product "Relion 650 Firmware" and version "2.2.1"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion 650
Search vendor "Hitachienergy" for product "Relion 650"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion 650 Firmware
Search vendor "Hitachienergy" for product "Relion 650 Firmware"
2.2.1.6
Search vendor "Hitachienergy" for product "Relion 650 Firmware" and version "2.2.1.6"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion 650
Search vendor "Hitachienergy" for product "Relion 650"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion Sam600-io Firmware
Search vendor "Hitachienergy" for product "Relion Sam600-io Firmware"
>= 2.2.5 < 2.2.5.6
Search vendor "Hitachienergy" for product "Relion Sam600-io Firmware" and version " >= 2.2.5 < 2.2.5.6"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion Sam600-io
Search vendor "Hitachienergy" for product "Relion Sam600-io"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion Sam600-io Firmware
Search vendor "Hitachienergy" for product "Relion Sam600-io Firmware"
2.2.1
Search vendor "Hitachienergy" for product "Relion Sam600-io Firmware" and version "2.2.1"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion Sam600-io
Search vendor "Hitachienergy" for product "Relion Sam600-io"
--
Safe
Hitachienergy
Search vendor "Hitachienergy"
Relion Sam600-io Firmware
Search vendor "Hitachienergy" for product "Relion Sam600-io Firmware"
2.2.1.6
Search vendor "Hitachienergy" for product "Relion Sam600-io Firmware" and version "2.2.1.6"
-
Affected
in Hitachienergy
Search vendor "Hitachienergy"
Relion Sam600-io
Search vendor "Hitachienergy" for product "Relion Sam600-io"
--
Safe