An issue was discovered in Honeywell Experion Process Knowledge System (PKS) platform: Experion PKS, Release 3xx and prior, Experion PKS, Release 400, Experion PKS, Release 410, Experion PKS, Release 430, and Experion PKS, Release 431. Experion PKS does not properly validate input. By sending a specially crafted packet, an attacker could cause the process to terminate. A successful exploit would prevent firmware uploads to the Series-C devices.
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:LHoneywell Experion Process Knowledge System
APPHoneywell410430431≤ 311≤ 411
Related vulnerabilities
Zapis do dowolnej pamięci w Honeywell Experion PKS — możliwe RCE
File Inclusion w Honeywell Experion PKS — możliwy RCE
Przepełnienie bufora sterty w Honeywell Experion PKS — RCE/DoS
Stack-based buffer overflow w Honeywell Experion PKS — RCE i DoS
A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400....