Multiple heap-based buffer overflow vulnerabilities exist in Honeywell Experion PKS all versions prior to R400.6, all versions prior to R410.6, and all versions prior to R430.2 modules, which could lead to possible remote code execution or denial of service. Honeywell strongly encourages and recommends all customers running unsupported versions of EKPS prior to R400 to upgrade to a supported version.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HHoneywell Experion Process Knowledge System
APPHoneywellr400 – r400.6 (excl.)r410 – r410.6 (excl.)r430 – r430.2 (excl.)
Related vulnerabilities
Zapis do dowolnej pamięci w Honeywell Experion PKS — możliwe RCE
File Inclusion w Honeywell Experion PKS — możliwy RCE
Stack-based buffer overflow w Honeywell Experion PKS — RCE i DoS
A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400....
Odkryto lukę w platformie Honeywell Experion Process Knowledge System (PKS): wersje 3xx i wcześniejsze, 400, 4...