CVE-2023-5401: Honeywell Experion Server
High severity, CVSS 8.1. EPSS: 0.7% chance of exploitation in the next 30 days.
Server receiving a malformed message based on a using the specified key values can cause a stack overflow vulnerability which could lead to an attacker performing remote code execution or causing a failure. See Honeywell Security Notification for recommendations on upgrading and versioning.
Affected products
- Honeywell Experion Server: from 520.2, up to and including 520.2 TCU4; from 510.1, up to and including 510.2 HF13; from 520.1, up to and including 520.1 TCU4; from 511.1, up to and including 511.5 TCU4 HF3; from 520.2 TCU4 HFR2, up to and including 511.5 TCU4 HF3
Published 2024-04-17. Last modified 2026-06-17.