C300
6 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for C300, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
C300 CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 6 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical3
- High2
- Medium1
Latest CVEs
The 6 most recently published vulnerabilities affecting C300.
- CVE-2023-5407Controller denial of service due to improper handling of a specially crafted message received by the controller. See Honeywell Security Notification for recommendations on upgrading and versioning.5.9
- CVE-2023-5392C300 information leak due to an analysis feature which allows extracting more memory over the network than required by the function. Honeywell recommends updating to the most recent version of the...7.5
- CVE-2023-26597Controller DOS on sending error response7.5
- CVE-2023-25770Controller stack overflow on decoding messages from the server9.8
- CVE-2023-25178Controller design flaw - unsigned firmware9.8
- CVE-2023-24480Controller stack overflow when decoding messages from the server9.8
Product grouping is registry-driven, with AI assist and human review. How it works