A CWE-754 – Improper Check for Unusual or Exceptional Conditions vulnerability exists in Magelis HMI Panels (all versions of - HMIGTO, HMISTO, XBTGH, HMIGTU, HMIGTUX, HMISCU, HMISTU, XBTGT, XBTGT, HMIGXO, HMIGXU), which could cause a temporary freeze of the HMI when a high rate of frames is received. When the attack stops, the buffered commands are processed by the HMI panel.

Project Subscriptions

Vendors Products
Schneider-electric Subscribe
Hmig3ufc Subscribe
Hmig5u2 Subscribe
Hmig5ufc Subscribe
Hmig5ul8a Subscribe
Hmigto1300 Subscribe
Hmigto1310 Subscribe
Hmigto2300 Subscribe
Hmigto2310 Subscribe
Hmigto2315 Subscribe
Hmigto3510 Subscribe
Hmigto4310 Subscribe
Hmigto5310 Subscribe
Hmigto5315 Subscribe
Hmigto6310 Subscribe
Hmigto6315 Subscribe
Hmigto Firmware Subscribe
Hmigtu Firmware Subscribe
Hmigxo Firmware Subscribe
Hmigxu35 Subscribe
Hmigxu55 Subscribe
Hmigxu Firmware Subscribe
Hmiscu6a5 Subscribe
Hmiscu6b5 Subscribe
Hmiscu8a5 Subscribe
Hmiscu8b5 Subscribe
Hmiscu Firmware Subscribe
Hmisto501 Subscribe
Hmisto511 Subscribe
Hmisto512 Subscribe
Hmisto531 Subscribe
Hmisto532 Subscribe
Hmisto705 Subscribe
Hmisto715 Subscribe
Hmisto735 Subscribe
Hmisto Firmware Subscribe
Hmistu655 Subscribe
Hmistu655w Subscribe
Hmistu855 Subscribe
Hmistu855w Subscribe
Hmistu Firmware Subscribe
Xbtgh2460 Subscribe
Xbtgh Firmware Subscribe
Xbtgt2430 Subscribe
Xbtgt2930 Subscribe
Xbtgt Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2019-16387 A CWE-754 – Improper Check for Unusual or Exceptional Conditions vulnerability exists in Magelis HMI Panels (all versions of - HMIGTO, HMISTO, XBTGH, HMIGTU, HMIGTUX, HMISCU, HMISTU, XBTGT, XBTGT, HMIGXO, HMIGXU), which could cause a temporary freeze of the HMI when a high rate of frames is received. When the attack stops, the buffered commands are processed by the HMI panel.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 30 Sep 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2025-09-30T14:36:19.669Z

Reserved: 2019-01-25T00:00:00.000Z

Link: CVE-2019-6833

cve-icon Vulnrichment

Updated: 2024-08-04T20:31:04.400Z

cve-icon NVD

Status : Modified

Published: 2019-09-17T20:15:12.467

Modified: 2025-09-30T15:15:39.103

Link: CVE-2019-6833

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses