ICSA-20-044-02
·
Published 2020-02-13
·
View on CISA ICS-CERT ↗
Schneider Electric Magelis HMI Panels
CVSS 7.4
HIGH
Risk Summary
Successful exploitation of this vulnerability could allow a denial-of-service condition.
CVEs (1)
Remediations
- Schneider Electric recommends users set up network segmentation and implement a firewall to block all unauthorized access to Ports 44818/TCP, 502/TCP, 6000/TCP, 6002/TCP, 8080/TCP, 8014/TCP, and 6001/TCP.
- For more information, see the Schneider Electric security notification.
Affected Vendors
Schneider Electric Software, LLC
Affected Products (11)
Schneider Electric Software, LLC
·
Magelis HMIGTO series
vers:all/*
Schneider Electric Software, LLC
·
Magelis HMIGTU series
vers:all/*
Schneider Electric Software, LLC
·
Magelis HMISCU series
vers:all/*
Schneider Electric Software, LLC
·
Magelis XBTGC series
vers:all/*
Schneider Electric Software, LLC
·
Magelis HMIGTUX series
vers:all/*
Schneider Electric Software, LLC
·
Magelis HMIGXU series
vers:all/*
Schneider Electric Software, LLC
·
Magelis HMISTU series
vers:all/*
Schneider Electric Software, LLC
·
Magelis XBTGH series
vers:all/*
Schneider Electric Software, LLC
·
Magelis XBTGT series
vers:all/*
Schneider Electric Software, LLC
·
Magelis HMIGXO series
vers:all/*
Schneider Electric Software, LLC
·
Magelis HMISTO series
vers:all/*
Affected Sectors
Critical Manufacturing, Food and Agriculture
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more