PT-2024-18825 · Schweitzer Engineering Laboratories · Sel-787Z+5

Anonymous Researcher

·

Published

2024-04-04

·

Updated

2024-04-04

·

CVE-2024-2103

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Schweitzer Engineering Laboratories SEL-700BT Motor Bus Transfer Relay (affected versions not specified) Schweitzer Engineering Laboratories SEL-700G Generator Protection Relay (affected versions not specified) Schweitzer Engineering Laboratories SEL-710-5 Motor Protection Relay (affected versions not specified) Schweitzer Engineering Laboratories SEL-751 Feeder Protection Relay (affected versions not specified) Schweitzer Engineering Laboratories SEL-787-2/-3/-4 Transformer Protection Relay (affected versions not specified) Schweitzer Engineering Laboratories SEL-787Z High-Impedance Differential Relay (affected versions not specified)
Description The inclusion of undocumented features vulnerability in certain Schweitzer Engineering Laboratories relays could cause unpredictable behavior when accessed with a privileged level. For more details, refer to the product instruction manuals.
Recommendations For SEL-700BT Motor Bus Transfer Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329. For SEL-700G Generator Protection Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329. For SEL-710-5 Motor Protection Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329. For SEL-751 Feeder Protection Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual appendix A dated 20240308. For SEL-787-2/-3/-4 Transformer Protection Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329. For SEL-787Z High-Impedance Differential Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329.

Fix

Weakness Enumeration

Related Identifiers

CVE-2024-2103

Affected Products

Sel-700Bt
Sel-700G
Sel-710-5
Sel-751
Sel-787-2/-3/-4
Sel-787Z