Arbitrary Memory Write Vulnerability in Honeywell Experion PKS Products
CVE-2014-5435
9.8CRITICAL
What is CVE-2014-5435?
An arbitrary memory write vulnerability exists in the dual_onsrv.exe module of Honeywell Experion PKS, allowing attackers to potentially execute arbitrary code or cause a denial of service. This affects the R40x, R41x, and R43x product lines prior to specific versions. It is crucial for users running unsupported versions of EKPS to upgrade to mitigate the risks associated with this vulnerability.
Affected Version(s)
Experion PKS R40x before R400.6
Experion PKS R41x before R410.6
Experion PKS R43x before R430.2
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
