CVE-2025-39201
Analyzed Analyzed - Analysis Complete
BaseFortify

Publication date: 2025-06-24

Last updated on: 2026-01-26

Assigner: Hitachi Energy

Description
A vulnerability exists in MicroSCADA X SYS600 product. If exploited this could allow a local unauthenticated attacker to tamper a system file, making denial of Notify service.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-06-24
Last Modified
2026-01-26
Generated
2026-05-07
AI Q&A
2025-06-24
EPSS Evaluated
2026-05-05
NVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
hitachienergy microscada_x_sys600 From 10.0 (inc) to 10.7 (exc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-276 During installation, installed file permissions are set to allow anyone to modify those files.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability exists in the MicroSCADA X SYS600 product and allows a local unauthenticated attacker to tamper with a system file, which can lead to denial of the Notify service.


How can this vulnerability impact me? :

If exploited, this vulnerability can cause denial of the Notify service by allowing an attacker to tamper with a system file, potentially disrupting system operations.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart