Vulnerabilities & Exploits · IoT / OT Attack

Hitachi RTU500 and REB500 Firmware Flaws Require Updates

An unprivileged user can read user-management information. Malformed IEC 60870-5-104 U-frames can disrupt RTU operation, and authenticated REB500 roles can access or alter unauthorized directories; devices are deployed in the energy sector and other critical infrastructure.

1 source · Mar 3

CVE-2024-8176

NVD KEV

CVSS 7.5 HIGH: a stack overflow vulnerability exists in the libexpat library due to the way it handles recursive entity expansion in XML documents. EPSS 1% (69th percentile).

CVE-2025-59375

NVD KEV

CVSS 7.5 HIGH: libexpat in Expat before 2.7.2 allows attackers to trigger large dynamic memory allocations via a small document that… EPSS 1% (68th percentile).

CVE-2026-1773

NVD KEV

CVSS 7.5 HIGH: iEC 60870-5-104: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if IEC 60870-5-104 bi-directional functionality is configured. EPSS 0.4% (33rd percentile).

CVE-2026-1772

NVD KEV

CVSS 5.3 MEDIUM: rTU500 web interface: An unprivileged user can read user management information. EPSS 0.3% (17th percentile).

Timeline

Sources

Part of the PlainSec briefing for 2026-03-04

Every edition of this story: Hitachi RTU500 and REB500 Firmware Flaws Require Updates

More from today