CVE-2019-6833

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/09/2019
Last modified:
10/02/2020

Description

A CWE-754 – Improper Check for Unusual or Exceptional Conditions vulnerability exists in Magelis HMI Panels (all versions of - HMIGTO, HMISTO, XBTGH, HMIGTU, HMIGTUX, HMISCU, HMISTU, XBTGT, XBTGT, HMIGXO, HMIGXU), which could cause a temporary freeze of the HMI when a high rate of frames is received. When the attack stops, the buffered commands are processed by the HMI panel.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:schneider-electric:hmigto_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto1300:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto1310:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto2300:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto2310:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto2315:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto3510:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto4310:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto5310:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto5315:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto6310:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmigto6315:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:hmisto_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmisto501:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmisto511:-:*:*:*:*:*:*:*