www.cisa.gov 8/13/2026, 5:51:21 PM · external

Hitachi Energy APM Edge flaws let local users gain root access

CyberSIXT Evidence Panel
Primary Source github.com
CISA KEV Not in KEV
Patch Patch Available

THE advisory highlights vulnerabilities in Hitachi Energy's APM Edge product, specifically related to two critical flaws: CVE-2026-43284 and CVE-2026-43500. Both vulnerabilities could allow local unprivileged users to escalate privileges to root, affecting the product's confidentiality, integrity, and availability. Affected versions include APM Edge versions 6.10 and earlier. The advisories recommend immediate mitigation actions such as disabling vulnerable kernel modules (esp4, esp6, and rxrpc).

The advisory emphasizes the importance of implementing security best practices to protect industrial control systems. The release date for this advisory is August 13, 2026.

View Primary Source Via www.cisa.gov

Article by CyberSIXT