CVE-2019-6853: Schneider Electric Andover Continuum 5720 Firmware

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

A CWE-79: Failure to Preserve Web Page Structure vulnerability exists in Andover Continuum (models 9680, 5740 and 5720, bCX4040, bCX9640, 9900, 9940, 9924 and 9702) , which could enable a successful Cross-site Scripting (XSS attack) when using the products web server.

Affected products

Published 2019-11-20. Last modified 2026-06-17.