Impact
CVE-2026-16316 reveals an improper input validation in OMICRON StationGuard 4.00’s handling of IEC 61850 Sampled Values (SV) frames, allowing a specially crafted frame to crash the SV processing process. The crash causes a brief loss of alert handling for SV traffic while the process is automatically restarted and the failure is reported to the user. Consequently, the vulnerability provides a limited denial‑of‑service effect that affects only the SV service and does not compromise overall system availability.
Affected Systems
OMICRON electronics GmbH’s StationGuard 4.00 is impacted. The vulnerability exists in this version of the product and no other products or versions are indicated.
Risk and Exploitability
With an extremely low CVSS score of 1.3 and no EPSS data, the likelihood of exploitation is low. The vulnerability does not appear on the KEV list. An attacker would need to be able to inject a malicious SV frame onto the IEC 61850 network segment containing the StationGuard instance and would need to send a specially crafted frame. Because the process automatically restarts and the failure is reported, the impact would be brief and limited to disruption of sampled‑value alerts only.
OpenCVE Enrichment