CVE-2026-1773Disclosure(hitachienergy / rtu520)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch hitachienergy rtu520 systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

IEC 60870-5-104 used in RTU500: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if IEC 60870-5-104 bi-directional functionality is configured. Enabling secure communication following IEC 62351-3 does not remediate the vulnerability but mitigates the risk of exploitation.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-184

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • rtu520
  • rtu520_firmware
  • rtu530
  • rtu530_firmware

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 3 mentions (2026-02-28); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Products
rtu520rtu520_firmwarertu530rtu530_firmwarertu540rtu540_firmwarertu560rtu560_firmware

2 versions affected across 8 products

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-02-24: 1Mentions · 2026-02-28: 3Mentions · 2026-03-01: 1Patch / Workaround · 2026-02-24: 1Technical Details · 2026-02-24: 1Technical Details · 2026-02-28: 3Technical Details · 2026-03-01: 102-2402-2803-01
Signal classification2 categories
Disclosure
480.0%
Patch
120.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-02-241
Patch1
2026-02-283
Disclosure3
2026-03-011
Disclosure1
Full discourse5 posts
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-1773 (CVSS:8.7, HIGH) is Analyzed. IEC 60870-5-104: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if ..https://nvd.nist.gov/vuln/detail/CVE-2026-1773 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces CVE‑2026‑1773, a high‑severity denial‑of‑service flaw in IEC 60870‑5‑104, noting its CVSS score and impact, but offers no PoC, exploit, or patch details.

    0000037
    173 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-1773 IEC 60870-5-104: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if IEC 60870-5-104 bi-directional functionality is … https://www.cve.org/CVERecord?id=CVE-2026-1773 ----- Traducción: CVE-2026-1773 IEC… http://infoflow.cloud`

    Post summary

    The post announces CVE-2026-1773, a potential DoS vulnerability in IEC 60870-5-104 when receiving invalid U-format frames, but provides no PoC, exploit, or patch details.

    0000057
    55 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-1773 IEC 60870-5-104: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if IEC 60870-5-104 bi-directional functionality is … https://www.cve.org/CVERecord?id=CVE-2026-1773

    Post summary

    The post announces CVE‑2026‑1773, describing a DoS vulnerability in IEC 60870‑5‑104 when receiving invalid U‑format frames, but provides no PoC, exploit, or patch information.

    00000315
    56.6K followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-1773 (CVSS:8.7, HIGH) is Analyzed. IEC 60870-5-104: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if ..https://nvd.nist.gov/vuln/detail/CVE-2026-1773 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post informs readers about CVE‑2026‑1773, a high‑severity DoS flaw in IEC 60870‑5‑104, without mentioning any PoC, exploit, or patch.

    0000035
    173 followersView on X
  • CVEFind.com@CveFindCom
    Patch

    [CVE-2026-1773: HIGH] IEC 60870-5-104 vulnerability: Denial of Service risk due to invalid U-format frames. Configure bi-directional function carefully. Secure with IEC 62351-3 to reduce exploit risk.#cve,CVE-2026-1773,#cybersecurity https://cvefind.com/CVE-2026-1773

    Post summary

    The post announces a high‑severity DoS vulnerability in IEC 60870‑5‑104 caused by invalid U‑format frames and recommends configuring bi‑directional functions carefully and applying IEC 62351‑3 to mitigate the risk.

    0000086
    584 followersView on X
CPE platform detail12 entries

12 of 12 entries

PartVendorProductVersionTarget SWTarget HW
HWhitachienergyrtu520---
OShitachienergyrtu520_firmware---
OShitachienergyrtu520_firmware13.8.1--
HWhitachienergyrtu530---
OShitachienergyrtu530_firmware---
OShitachienergyrtu530_firmware13.8.1--
HWhitachienergyrtu540---
OShitachienergyrtu540_firmware---
OShitachienergyrtu540_firmware13.8.1--
HWhitachienergyrtu560---
OShitachienergyrtu560_firmware---
OShitachienergyrtu560_firmware13.8.1--

Explore more