5.3
CVSSv3

CVE-2023-5390

Published: 31/01/2024 Updated: 08/02/2024
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An attacker could potentially exploit this vulnerability, leading to files being read from the Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC. This exploit could be used to read files from the controller that may expose limited information from the device. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning.

Vulnerable Product Search on Vulmon Subscribe to Product

honeywell controledge_unit_operations_controller_firmware -

honeywell controledge_virtual_unit_operations_controller_firmware -