Medium severity6.5NVD Advisory· Published Jun 24, 2025· Updated Jun 17, 2026
CVE-2025-39205
CVE-2025-39205
Description
A vulnerability exists in the IEC 61850 in MicroSCADA X SYS600 product. The certificate validation of the TLS protocol allows remote Man-in-the-Middle attack due to missing proper validation.
Affected products
4cpe:2.3:a:hitachienergy:microscada_x_sys600:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:hitachienergy:microscada_x_sys600:*:*:*:*:*:*:*:*range: >=10.3,<10.7
- (no CPE)
- Range: 10.3
Patches
Vulnerability mechanics
References
1- publisher.hitachienergy.com/previewnvdVendor Advisory
News mentions
0No linked articles in our index yet.