CVE Database
/

CVE-2023-25770

Back to search

CVE-2023-25770

Published: Jul 13, 2023

Modified: Aug 2, 2024

PUBLISHED

CVSS v3.1

9.8

CRITICAL

Description

Controller DoS may occur due to buffer overflow when an error is generated in response to a specially crafted message. See Honeywell Security Notification for recommendations on upgrading and versioning.

VendorProductVersions

Honeywell

C300

affected
501.1 - <= 501.6HF8
affected
510.1 - <= 510.2HF12
affected
511.1 - <= 511.5TCU3
affected
520.1 - <= 520.1TCU4
affected
520.2 - <= 520.2TCU2

Honeywell

C300

affected
510.1 - <= 511.5TCU3
affected
520.1 - <= 520.1TCU4
affected
520.2 - <= 520.2TCU2

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now