Vulnerability Details CVE-2023-25178
Controller may be loaded with malicious firmware which could enable remote code execution. See Honeywell Security Notification for recommendations on upgrading and versioning.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.017
EPSS Ranking 81.4%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-25178
-
cpe:2.3:h:honeywell:c300:-
-
cpe:2.3:o:honeywell:c300_firmware:*