CVE-2024-12169

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Mar 25, 2025
Updated: Mar 27, 2025

Summary

CVE-2024-12169 is a newly identified vulnerability affecting RTU500 IEC 60870-5-104 and IEC 61850 controlled station functionalities. An attacker can exploit this issue by executing a specific sequence of attacks, resulting in the restart of the affected Control and Monitoring Unit (CMU). This vulnerability poses a threat only when secure communication using IEC 62351-3 (TLS) is enabled.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • ABB RTU500 Remote Terminal Units

Affected Vendors

  • ABB