← Back to home
ICSA-20-044-02  ·  Published 2020-02-13  ·  View on CISA ICS-CERT ↗

Schneider Electric Magelis HMI Panels

CVSS 7.4 HIGH

Risk Summary

Successful exploitation of this vulnerability could allow a denial-of-service condition.

CVEs (1)

Remediations

  • Schneider Electric recommends users set up network segmentation and implement a firewall to block all unauthorized access to Ports 44818/TCP, 502/TCP, 6000/TCP, 6002/TCP, 8080/TCP, 8014/TCP, and 6001/TCP.
  • For more information, see the Schneider Electric security notification.

Affected Vendors

Schneider Electric Software, LLC

Affected Products (11)

Schneider Electric Software, LLC · Magelis HMIGTO series vers:all/*
Schneider Electric Software, LLC · Magelis HMIGTU series vers:all/*
Schneider Electric Software, LLC · Magelis HMISCU series vers:all/*
Schneider Electric Software, LLC · Magelis XBTGC series vers:all/*
Schneider Electric Software, LLC · Magelis HMIGTUX series vers:all/*
Schneider Electric Software, LLC · Magelis HMIGXU series vers:all/*
Schneider Electric Software, LLC · Magelis HMISTU series vers:all/*
Schneider Electric Software, LLC · Magelis XBTGH series vers:all/*
Schneider Electric Software, LLC · Magelis XBTGT series vers:all/*
Schneider Electric Software, LLC · Magelis HMIGXO series vers:all/*
Schneider Electric Software, LLC · Magelis HMISTO series vers:all/*

Affected Sectors

Critical Manufacturing, Food and Agriculture

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more