Sensitive Information Exposure in Honeywell Experion PKS and OneWireless WDM
CVE-2025-2522
What is CVE-2025-2522?
A vulnerability in Honeywell Experion PKS and OneWireless WDM allows sensitive information to be exposed through Control Data Access (CDA). Attackers may exploit this weakness to manipulate communication channels, potentially leading to buffer reuse and causing unexpected behavior in the system. Honeywell advises users to update to the latest versions of Experion PKS: 520.2 TCU9 HF1, 530.1 TCU3 HF1, and OneWireless: 322.5 and 331.1 to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
C200E Experion PKS 520.1 <= 520.2 TCU9
C200E Experion PKS 530 <= 530 TCU3
C300 PCNT02 Experion PKS 520.1 <= 520.2 TCU9
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
