C300 information leak due to an analysis feature which allows extracting more memory over the network than required by the function. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning.
References
Link | Resource |
---|---|
https://process.honeywell.com | |
https://process.honeywell.com |
Configurations
No configuration.
History
21 Nov 2024, 08:41
Type | Values Removed | Values Added |
---|---|---|
References | () https://process.honeywell.com - |
12 Apr 2024, 12:44
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
11 Apr 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-04-11 20:15
Updated : 2024-11-21 08:41
NVD link : CVE-2023-5392
Mitre link : CVE-2023-5392
CVE.ORG link : CVE-2023-5392
JSON object : View
Products Affected
No product.
CWE
CWE-1295
Debug Messages Revealing Unnecessary Information