CriticalPublished 2024-05-07 · 5d ago

ICSA-24-128-02 · CVE-2024-30471

Experion PKS heap overflow in CDA broker

Heap overflow in the Control Data Access (CDA) broker on connection negotiation; allows remote unauthenticated code execution.

Mitigations

  1. 01Apply Experion R520.2 hotfix
  2. 02Segment CDA brokers from Level 3 networks