An attacker could potentially exploit this vulnerability, leading to the ability to modify files on Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC . This exploit could be used to write a file that may result in unexpected behavior based on configuration changes or updating of files that could result in subsequent execution of a malicious application if triggered. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning.
| Link | Resource |
|---|---|
| https://process.honeywell.com | Product |
| https://www.honeywell.com/us/en/product-security | Not Applicable |
| https://process.honeywell.com | Product |
| https://www.honeywell.com/us/en/product-security | Not Applicable |
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
21 Nov 2024, 08:41
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://process.honeywell.com - Product | |
| References | () https://www.honeywell.com/us/en/product-security - Not Applicable | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.1 |
Published : 2024-01-30 20:15
Updated : 2024-11-21 08:41
NVD link : CVE-2023-5389
Mitre link : CVE-2023-5389
CVE.ORG link : CVE-2023-5389
JSON object : View