CVE Database
/

CVE-2023-24474

Back to search

CVE-2023-24474

Published: Jul 13, 2023

Modified: Nov 12, 2024

PUBLISHED

CVSS v3.1

7.5

HIGH

Description

Experion server may experience a DoS due to a heap overflow which could occur when handling a specially crafted message

VendorProductVersions

Honeywell

Experion Server

affected
501.1 - <= 501.6HF8
affected
510.1 - <= 510.2HF12
affected
511.1 - <= 511.5TCU3
affected
520.1 - <= 520.1TCU4
affected
520.2 - <= 520.2TCU2

Honeywell

Experion Station

affected
501.1 - <= 501.6HF8
affected
510.1 - <= 510.2HF12
affected
511.1 - <= 511.5TCU3
affected
520.1 - <= 520.1TCU4
affected
520.2 - <= 520.2TCU2

Honeywell

Engineering Station

affected
510.1 - <= 511.5TCU3
affected
520.1 - <= 520.1TCU4
affected
520.2 - <= 520.2TCU2

Honeywell

Direct Station

affected
510.5 - <= 511.5TCU3
affected
520.1 - <= 520.1TCU4
affected
520.2 - <= 520.2TCU2

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

None

Availability

None

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now