← Back to home
ICSA-15-272-01  ·  Published 2025-06-09  ·  View on CISA ICS-CERT ↗

Honeywell Experion PKS Directory Traversal Vulnerability

CVSS 9.4 CRITICAL

CVEs (1)

Remediations

  • Update to currently supported versions of Experion software.
  • Since the vulnerable service remains installed, attention should be paid to ensuring that the Windows firewall remain enabled at all times.
  • Enabling the Windows-based firewall and maintaining other safeguards can mitigate the risk.
  • For existing customers more information can be found on the Honeywell Process Solutions website (login required).

Affected Vendors

Honeywell

Affected Products (1)

Honeywell · Experion PKS Release <=310.x

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more