Show plain JSON{"id": "CVE-2023-25948", "metrics": {"cvssMetricV31": [{"type": "Secondary", "source": "psirt@honeywell.com", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7.5, "attackVector": "NETWORK", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 3.6, "exploitabilityScore": 3.9}, {"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7.5, "attackVector": "NETWORK", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 3.6, "exploitabilityScore": 3.9}]}, "published": "2023-07-13T12:15:09.187", "references": [{"url": "https://process.honeywell.com", "tags": ["Product"], "source": "psirt@honeywell.com"}, {"url": "https://process.honeywell.com", "tags": ["Product"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Secondary", "source": "psirt@honeywell.com", "description": [{"lang": "en", "value": "CWE-394"}]}, {"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-209"}]}], "descriptions": [{"lang": "en", "value": "Server information leak of configuration data when an error is generated in response to a specially crafted message.\u00a0See Honeywell Security Notification for recommendations on upgrading and versioning. \n\n"}], "lastModified": "2024-11-21T07:50:29.967", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:honeywell:experion_server:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DED6EB36-056C-422C-9C6E-9EDE45DDB5F9", "versionEndIncluding": "501.6hf8", "versionStartIncluding": "501.1"}, {"criteria": "cpe:2.3:a:honeywell:experion_server:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0511367E-4C62-44C9-BFF9-84E969562A9F", "versionEndIncluding": "510.2hf12", "versionStartIncluding": "510.1"}, {"criteria": "cpe:2.3:a:honeywell:experion_server:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3A2EAD5D-9B56-4F09-A25B-E98671AE52AC", "versionEndIncluding": "511.5tcu3", "versionStartIncluding": "511.1"}, {"criteria": "cpe:2.3:a:honeywell:experion_server:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E9EAE3B9-6173-4568-962A-C472F593FC47", "versionEndIncluding": "520.1tcu4", "versionStartIncluding": "520.1"}, {"criteria": "cpe:2.3:a:honeywell:experion_server:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "29DFE287-6206-46E2-9118-9159EC44748E", "versionEndIncluding": "520.2tcu2", "versionStartIncluding": "520.2"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:honeywell:experion_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A34A2DF5-19BC-4823-8DD3-54C50EA43B65", "versionEndIncluding": "501.6hf8", "versionStartIncluding": "501.1"}, {"criteria": "cpe:2.3:a:honeywell:experion_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0FCC07AA-C8CC-4C69-8011-988932D2F0FB", "versionEndIncluding": "510.2hf12", "versionStartIncluding": "510.1"}, {"criteria": "cpe:2.3:a:honeywell:experion_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "90CA038F-5C1A-46FF-9EA3-7606B3FF703C", "versionEndIncluding": "511.5tcu3", "versionStartIncluding": "511.1"}, {"criteria": "cpe:2.3:a:honeywell:experion_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9BAC831-F60D-4010-8EE9-8A741244CB9B", "versionEndIncluding": "520.1tcu4", "versionStartIncluding": "520.1"}, {"criteria": "cpe:2.3:a:honeywell:experion_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1B32781-B0B3-4C74-882B-1DF622DEC11C", "versionEndIncluding": "520.2tcu2", "versionStartIncluding": "520.2"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:honeywell:engineering_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3147FD0E-091B-4096-87D1-C006E3667F6B", "versionEndIncluding": "511.tcu3", "versionStartIncluding": "510.1"}, {"criteria": "cpe:2.3:a:honeywell:engineering_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "96A06B44-5738-4A77-98EB-DAB61C07A6D5", "versionEndIncluding": "520.1tcu4", "versionStartIncluding": "520.1"}, {"criteria": "cpe:2.3:a:honeywell:engineering_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "177013AA-A2F8-4FC4-82AC-79A6A7196767", "versionEndIncluding": "520.2tcu2", "versionStartIncluding": "520.2"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:honeywell:direct_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F5F7E4E9-50A2-427F-9945-2A83F4D8C62D", "versionEndIncluding": "511.tcu3", "versionStartIncluding": "510.1"}, {"criteria": "cpe:2.3:a:honeywell:direct_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6ABEC6C0-CF74-49E3-88BA-5D06484DFAA8", "versionEndIncluding": "520.1tcu4", "versionStartIncluding": "520.1"}, {"criteria": "cpe:2.3:a:honeywell:direct_station:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BD33B3A2-FC18-4BE6-98A7-88D06339EE28", "versionEndIncluding": "520.2tcu2", "versionStartIncluding": "520.2"}], "operator": "OR"}]}], "sourceIdentifier": "psirt@honeywell.com"}