CVE Database
/

CVE-2023-26597

Back to search

CVE-2023-26597

Published: Jul 13, 2023

Modified: Mar 5, 2025

PUBLISHED

CVSS v3.1

7.5

HIGH

Description

Controller DoS due to buffer overflow in the handling of a specially crafted message received by the controller. See Honeywell Security Notification for recommendations on upgrading and versioning. See Honeywell Security Notification for recommendations on upgrading and versioning.

VendorProductVersions

Honeywell

C300

affected
501.1 - <= 501.6HF8
affected
510.1 - <= 510.2HF12
affected
511.1 - <= 511.5TCU3
affected
520.1 - <= 520.1TCU4
affected
520.2 - <= 520.2TCU2

Honeywell

C300

affected
510.1 - <= 511.5TCU3
affected
520.1 - <= 520.1TCU4
affected
520.2 - <= 520.2TCU2

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

None

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now