CRITICAL 9.1 NVD

CVE-2026-8066

A directory traversal vulnerability in the file upload functionality of Hitachi Energy RTU500 end-of-life versions allows an unauthenticated attacker to write o

A directory traversal vulnerability in the file upload functionality of Hitachi Energy RTU500 end-of-life versions allows an unauthenticated attacker to write or overwrite arbitrary files on the device file system. Depending on the files affected, successful exploitation could result in unauthorized modification of device data or disruption of the device’s intended operation.

References

Published: 2026-09-29 · Source: NVD · Feed updated: 2026-09-30
This critical severity vulnerability with a CVSS score of 9.1 was published on 2026-09-29 via NVD.

Risk Timeline

CVE Disclosed2026-09-29 · 0 days ago

Remediation Resources

vulnfeed aggregates 10239 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.