QID 590489
Date Published: 2021-10-14
QID 590489: Schneider Electric Magelis HMI Resource Consumption (Update B) Multiple Vulnerabilities (ICSA-16-308-02)
AFFECTED PRODUCTS
Schneider Electric reports that the vulnerabilities affect the following versions of Magelis HMI:
Magelis GTO Advanced Optimum Panels, all versions,
Magelis GTU Universal Panel, all versions,
Magelis STO5xx and STU Small panels, all versions,
Magelis XBT GH Advanced Hand-held Panels, all versions,
Magelis XBT GK Advanced Touchscreen Panels with Keyboard, all versions,
Magelis XBT GT Advanced Touchscreen Panels, all versions, and
Magelis XBT GTW Advanced Open Touchscreen Panels (Windows XPe).
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
Successful exploitation of these vulnerabilities could result in a denial of service for the affected devices.
Customers are advised to refer to CERT MITIGATIONS section ICSA-16-308-02 for affected packages and patching details.
- ICSA-16-308-02 -
www.us-cert.gov/ics/advisories/ICSA-16-308-02
CVEs related to QID 590489
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-16-308-02 |
|