{"id":"CVE-2026-8065","published":"2026-09-29T10:17:13.110","lastModified":"2026-09-29T21:39:02.570","description":"An authentication bypass vulnerability in the firmware update endpoint of Hitachi Energy RTU500 end-of-life versions allows an unauthenticated attacker to upload arbitrary firmware through a crafted POST request. Successful exploitation could allow the attacker to modify device functionality or compromise the integrity or availability of the device.","cvssScore":9.1,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H","cwes":["CWE-306"],"vendors":[],"products":[],"references":[{"url":"https://publisher.hitachienergy.com/preview?DocumentID=8DBD000251&LanguageCode=en&DocumentPartId=&Action=Launch","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"An authentication bypass vulnerability in the firmware update endpoint of Hitachi Energy RTU500 end-of-life versions allows unauthenticated attackers to upload arbitrary firmware, potentially compromising the device's functionality.","exploitability":"Exploitation is relatively straightforward as it requires crafting a POST request to the firmware update endpoint, which can be automated.","blast_radius":"If exploited, the attacker could modify the device's functionality or compromise its integrity and availability, leading to potential operational disruptions.","remediation":"Disable the firmware update feature or restrict access to the firmware update endpoint.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["auth-bypass","firmware","ics","unauthenticated","update"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-30T08:57:55.178Z"}}