A CWE-754 – Improper Check for Unusual or Exceptional Conditions vulnerability exists in Magelis HMI Panels (all versions of - HMIGTO, HMISTO, XBTGH, HMIGTU, HMIGTUX, HMISCU, HMISTU, XBTGT, XBTGT, HMIGXO, HMIGXU), which could cause a temporary freeze of the HMI when a high rate of frames is received. When the attack stops, the buffered commands are processed by the HMI panel.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Schneider-electric
Subscribe
|
Hmig2u
Subscribe
Hmig3u
Subscribe
Hmig3ufc
Subscribe
Hmig5u
Subscribe
Hmig5u2
Subscribe
Hmig5ufc
Subscribe
Hmig5ul8a
Subscribe
Hmigto1300
Subscribe
Hmigto1310
Subscribe
Hmigto2300
Subscribe
Hmigto2310
Subscribe
Hmigto2315
Subscribe
Hmigto3510
Subscribe
Hmigto4310
Subscribe
Hmigto5310
Subscribe
Hmigto5315
Subscribe
Hmigto6310
Subscribe
Hmigto6315
Subscribe
Hmigto Firmware
Subscribe
Hmigtu Firmware
Subscribe
Hmigxo
Subscribe
Hmigxo Firmware
Subscribe
Hmigxu35
Subscribe
Hmigxu55
Subscribe
Hmigxu Firmware
Subscribe
Hmiscu6a5
Subscribe
Hmiscu6b5
Subscribe
Hmiscu8a5
Subscribe
Hmiscu8b5
Subscribe
Hmiscu Firmware
Subscribe
Hmisto501
Subscribe
Hmisto511
Subscribe
Hmisto512
Subscribe
Hmisto531
Subscribe
Hmisto532
Subscribe
Hmisto705
Subscribe
Hmisto715
Subscribe
Hmisto735
Subscribe
Hmisto Firmware
Subscribe
Hmistu655
Subscribe
Hmistu655w
Subscribe
Hmistu855
Subscribe
Hmistu855w
Subscribe
Hmistu Firmware
Subscribe
Xbtgh2460
Subscribe
Xbtgh Firmware
Subscribe
Xbtgt2430
Subscribe
Xbtgt2930
Subscribe
Xbtgt Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-16387 | A CWE-754 – Improper Check for Unusual or Exceptional Conditions vulnerability exists in Magelis HMI Panels (all versions of - HMIGTO, HMISTO, XBTGH, HMIGTU, HMIGTUX, HMISCU, HMISTU, XBTGT, XBTGT, HMIGXO, HMIGXU), which could cause a temporary freeze of the HMI when a high rate of frames is received. When the attack stops, the buffered commands are processed by the HMI panel. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 30 Sep 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2025-09-30T14:36:19.669Z
Reserved: 2019-01-25T00:00:00.000Z
Link: CVE-2019-6833
Updated: 2024-08-04T20:31:04.400Z
Status : Modified
Published: 2019-09-17T20:15:12.467
Modified: 2025-09-30T15:15:39.103
Link: CVE-2019-6833
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD