Honeywell

Experion Server

17 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.61%
  • Veröffentlicht 17.04.2024 17:15:14
  • Zuletzt bearbeitet 21.11.2024 08:41:42

Server communication with a controller can lead to remote code execution using a specially crafted message from the controller. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • EPSS 0.08%
  • Veröffentlicht 17.04.2024 17:15:14
  • Zuletzt bearbeitet 21.11.2024 08:41:42

Server information leak for the CDA Server process memory can occur when an error is generated in response to a specially crafted message. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • EPSS 1.01%
  • Veröffentlicht 17.04.2024 17:15:14
  • Zuletzt bearbeitet 21.11.2024 08:41:42

Server receiving a malformed message can cause a pointer to be overwritten which can result in a remote code execution or failure. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • EPSS 0.85%
  • Veröffentlicht 17.04.2024 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:41:41

Server receiving a malformed message creates connection for a hostname that may cause a stack overflow resulting in possible remote code execution. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • EPSS 1.01%
  • Veröffentlicht 17.04.2024 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:41:42

Server hostname translation to IP address manipulation which could lead to an attacker performing remote code execution or causing a failure. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • EPSS 1.63%
  • Veröffentlicht 17.04.2024 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:41:41

Server receiving a malformed message based on a using the specified key values can cause a stack overflow vulnerability which could lead to an attacker performing remote code execution or causing a failure. See Honeywell Security Notification for rec...

  • EPSS 1.63%
  • Veröffentlicht 17.04.2024 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:41:41

Server receiving a malformed message based on a using the specified key values can cause a heap overflow vulnerability which could lead to an attacker performing remote code execution or causing a failure.  See Honeywell Security Notification for rec...

  • EPSS 0.05%
  • Veröffentlicht 17.04.2024 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:41:41

Server receiving a malformed message based on a list of IPs resulting in heap corruption causing a denial of service. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • EPSS 0.32%
  • Veröffentlicht 17.04.2024 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:41:41

Server receiving a malformed message to create a new connection could lead to an attacker performing remote code execution or causing a failure. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • EPSS 1.21%
  • Veröffentlicht 17.04.2024 17:15:12
  • Zuletzt bearbeitet 21.11.2024 08:41:41

Server receiving a malformed message that uses the hostname in an internal table may cause a stack overflow resulting in possible remote code execution. See Honeywell Security Notification for recommendations on upgrading and versioning.