Description
A vulnerability exists in SYS600 RBAC mechanism where users having access to the engineering tools could elevate their privileges to administrator level on the underlying Windows host, granting themselves full control over the host machine.
Published: 2026-09-03
Score: 8.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw in the role‑based access control of Hitachi Energy MicroSCADA SYS600 allows users who currently have access to engineering tools to elevate their permissions to an administrator on the underlying Windows host, giving them complete control of the machine. The weakness is a misuse of privileges within the RBAC system and can be classified under CWE‑303.

Affected Systems

The vulnerability affects Hitachi Energy MicroSCADA SYS600. No specific product versions are listed, so all releases that include the cited RBAC mechanism are potentially impacted.

Risk and Exploitability

The CVSS score of 8.5 indicates a high severity vulnerability. The EPSS score is not available, and the issue is not listed in the CISA KEV catalog. Likely attack vectors involve local users who can launch engineering tools on the Windows host; an attacker only needs legitimate user credentials on that host to trigger the escalation.

Generated by OpenCVE AI on September 3, 2026 at 09:06 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest vendor‑supplied patch or upgrade to a fixed version of MicroSCADA SYS600 when available
  • Limit access to engineering tools to a strictly controlled set of authorized personnel
  • Enable and monitor detailed audit logs for privilege‑elevation activity on the Windows host

Generated by OpenCVE AI on September 3, 2026 at 09:06 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 03 Sep 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 03 Sep 2026 10:00:00 +0000

Type Values Removed Values Added
First Time appeared Hitachienergy
Hitachienergy microscada Sys600
Vendors & Products Hitachienergy
Hitachienergy microscada Sys600

Thu, 03 Sep 2026 09:30:00 +0000

Type Values Removed Values Added
Title Privilege Escalation via RBAC Bypass in Hitachi Energy MicroSCADA SYS600

Thu, 03 Sep 2026 08:15:00 +0000

Type Values Removed Values Added
Description A vulnerability exists in SYS600 RBAC mechanism where users having access to the engineering tools could elevate their privileges to administrator level on the underlying Windows host, granting themselves full control over the host machine.
Weaknesses CWE-303
References
Metrics cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Hitachienergy Microscada Sys600
cve-icon MITRE

Status: PUBLISHED

Assigner: Hitachi Energy

Published:

Updated: 2026-09-03T12:48:34.310Z

Reserved: 2026-05-28T15:04:57.817Z

Link: CVE-2026-9854

cve-icon Vulnrichment

Updated: 2026-09-03T12:48:30.909Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-03T13:06:26.083

Modified: 2026-09-03T16:43:15.293

Link: CVE-2026-9854

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-03T09:45:03Z

Weaknesses
  • CWE-303

    Incorrect Implementation of Authentication Algorithm