PT-2024-18825 · Schweitzer Engineering Laboratories · Sel-787Z+5
Anonymous Researcher
·
Published
2024-04-04
·
Updated
2024-04-04
·
CVE-2024-2103
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Schweitzer Engineering Laboratories SEL-700BT Motor Bus Transfer Relay (affected versions not specified)
Schweitzer Engineering Laboratories SEL-700G Generator Protection Relay (affected versions not specified)
Schweitzer Engineering Laboratories SEL-710-5 Motor Protection Relay (affected versions not specified)
Schweitzer Engineering Laboratories SEL-751 Feeder Protection Relay (affected versions not specified)
Schweitzer Engineering Laboratories SEL-787-2/-3/-4 Transformer Protection Relay (affected versions not specified)
Schweitzer Engineering Laboratories SEL-787Z High-Impedance Differential Relay (affected versions not specified)
Description
The inclusion of undocumented features vulnerability in certain Schweitzer Engineering Laboratories relays could cause unpredictable behavior when accessed with a privileged level. For more details, refer to the product instruction manuals.
Recommendations
For SEL-700BT Motor Bus Transfer Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329.
For SEL-700G Generator Protection Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329.
For SEL-710-5 Motor Protection Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329.
For SEL-751 Feeder Protection Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual appendix A dated 20240308.
For SEL-787-2/-3/-4 Transformer Protection Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329.
For SEL-787Z High-Impedance Differential Relay, update to a version that addresses the undocumented features vulnerability, as described in the instruction manual dated 20240329.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sel-700Bt
Sel-700G
Sel-710-5
Sel-751
Sel-787-2/-3/-4
Sel-787Z