You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2025-2403
About this tag
CVE-2025-2403 is a critical vulnerability affecting Hitachi Energy's Relion 670/650 series and SAM600-IO power grid devices. Classified as CWE-770 (Allocation of Resources Without Limits or Throttling), it exposes these devices to denial-of-service (DoS) risks. The flaw carries CVSS v3.1 score of 7.5 and CVSS v4 score of 8.7, highlighting its severity for critical infrastructure. CISA has included this vulnerability in its ICS advisories, urging rapid mitigation and patch management. Discussions on WindowsForum cover the technical details, affected versions, and recommended actions for defenders to reduce exposure in operational technology environments.
CISA’s September 2, 2025 bulletin that released four new Industrial Control Systems (ICS) advisories is a stark reminder that operational technology (OT) and energy-sector devices remain high-value targets—and that defenders must move faster than vendors and attackers to close windows of...
A critical new vulnerability—CVE-2025-2403—has brought global attention to Hitachi Energy’s Relion 670/650 series and SAM600-IO, devices central to safeguarding high-voltage infrastructure across the world’s power grids. The flaw, classified as “Allocation of Resources Without Limits or...
critical infrastructure
cve-2025-2403
cybersecurity
denial of service
firmware
grid protection
hitachi energy
ics security
industrial control systems
network security
operational technology
ot security
power grid security
relion series
resource exhaustion
sam600-io
scada security
security best practices
threat mitigation
vulnerability disclosure