A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.2, which could lead to possible information disclosure. Honeywell strongly encourages and recommends all customers running unsupported versions of EKPS prior to R400 to upgrade to a supported version.
References
Link | Resource |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-14-352-01 | Mitigation US Government Resource Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2019-04-08T15:18:41
Updated: 2019-04-08T15:18:41
Reserved: 2014-08-22T00:00:00
Link: CVE-2014-5436
JSON object: View
NVD Information
Status : Modified
Published: 2019-04-08T16:29:00.417
Modified: 2019-10-09T23:11:11.700
Link: CVE-2014-5436
JSON object: View
Redhat Information
No data.
CWE