Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2020-6982
In Honeywell WIN-PAK 4.7.2, Web and prior versions, the header injection vulnerability has been identified, which may allow remote code execution.
Win Pak
after 4.7.2
HIGH 7.2
CVE-2020-6978
In Honeywell WIN-PAK 4.7.2, Web and prior versions, the affected product is vulnerable due to the usage of old jQuery libraries.
Win Pak
4.7.2_b1072.3.4+
HIGH 8.8
CVE-2020-7005
In Honeywell WIN-PAK 4.7.2, Web and prior versions, the affected product is vulnerable to a cross-site request forgery, which may allow an attacker t…
Win Pak
4.7.2_b1072.3.4+
CRITICAL 9.1
CVE-2020-6972
In Notifier Web Server (NWS) Version 3.50 and earlier, the Honeywell Fire Web Server’s authentication may be bypassed by a capture-replay attack from…
Notifier Webserver
after 3.50
HIGH 7.8
CVE-2020-6968
Honeywell INNCOM INNControl 3 allows workstation users to escalate application user privileges through the modification of local configuration files.
Inncom Inncontrol Firmware
after 3.21
CRITICAL 9.8
CVE-2020-6959
The following versions of MAXPRO VMS and NVR, MAXPRO VMS:HNMSWVMS prior to Version VMS560 Build 595 T2-Patch, HNMSWVMSLT prior to Version VMS560 Buil…
Maxpro Nvr Xe Firmware
after 5.6
CRITICAL 9.8
CVE-2020-6960
The following versions of MAXPRO VMS and NVR, MAXPRO VMS:HNMSWVMS prior to Version VMS560 Build 595 T2-Patch, HNMSWVMSLT prior to Version VMS560 Buil…
Maxpro Nvr Xe Firmware
after 5.6
HIGH 7.5
CVE-2019-18230
Honeywell equIP and Performance series IP cameras, multiple versions, A vulnerability exists where the affected product allows unauthenticated access…
H4d8pr1 Firmware
1.000.hw01.1.20190822 / 1.000.hw01.3.20190820+
CRITICAL 9.8
CVE-2019-18226
Honeywell equIP series and Performance series IP cameras and recorders, A vulnerability exists in the affected products where IP cameras and recorder…
H2w2pc1m Firmware
Mitigation only
HIGH 7.5
CVE-2019-18228
Honeywell equIP series IP cameras Multiple equIP Series Cameras, A vulnerability exists in the affected products where a specially crafted HTTP packe…
H2w2pc1m Firmware
Mitigation only
MEDIUM 5.3
CVE-2019-13525
In IP-AK2 Access Control Panel Version 1.04.07 and prior, the integrated web server of the affected devices could allow remote attackers to obtain we…
Ip Ak2 Firmware
1.04.07+
MEDIUM 5.3
CVE-2019-13523
In Honeywell Performance IP Cameras and Performance NVRs, the integrated web server of the affected devices could allow remote attackers to obtain we…
Hbd3pr2 Firmware
Mitigation only
CRITICAL 9.8
CVE-2014-5435
An arbitrary memory write vulnerability exists in the dual_onsrv.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43…
Experion Process Knowledge System
Mitigation only
CRITICAL 9.8
CVE-2014-9186
A file inclusion vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.…
Experion Process Knowledge System
Mitigation only
HIGH 7.5
CVE-2014-5436
A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before …
Experion Process Knowledge System
Mitigation only
CRITICAL 9.8
CVE-2014-9187
Multiple heap-based buffer overflow vulnerabilities exist in Honeywell Experion PKS all versions prior to R400.6, all versions prior to R410.6, and a…
Experion Process Knowledge System
Mitigation only
CRITICAL 9.8
CVE-2014-9189EPSS 5%
Multiple stack-based buffer overflow vulnerabilities were found in Honeywell Experion PKS all versions prior to R400.6, all versions prior to R410.6,…
Experion Process Knowledge System
Mitigation only
MEDIUM 5.8
CVE-2018-14825
On Honeywell Mobile Computers (CT60 running Android OS 7.1, CN80 running Android OS 7.1, CT40 running Android OS 7.1, CK75 running Android OS 6.0, CN…
Cn80
Mitigation only
MEDIUM 6.1
CVE-2018-8714
Honeywell MatrikonOPC OPC Controller before 5.1.0.0 allows local users to transfer arbitrary files from a host computer and consequently obtain sensi…
Matrikonopc Explorer
5.1.0.0+
HIGH 8.1
CVE-2017-14263
Honeywell NVR devices allow remote attackers to create a user account in the admin group by leveraging access to a guest account to obtain a session …
Enterprise Dvr Firmware
Mitigation only
HIGH 8.8
CVE-2017-5671
Honeywell Intermec PM23, PM42, PM43, PC23, PC43, PD43, and PC42 industrial printers before 10.11.013310 and 10.12.x before 10.12.013309 have /usr/bin…
Intermec Pc23 Firmware
after 10.10.011406
CRITICAL 9.8
CVE-2017-5139
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior. Any user i…
Xl Web Ii Controller
Mitigation only
CRITICAL 9.8
CVE-2017-5140
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior. Password i…
Xl Web Ii Controller
Mitigation only
CRITICAL 9.1
CVE-2017-5142
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior. A user wit…
Xl Web Ii Controller
Mitigation only
HIGH 8.6
CVE-2017-5143
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior. A user wit…
Xl Web Ii Controller
Mitigation only
MEDIUM 6.0
CVE-2017-5141
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior. An attacke…
Xl Web Ii Controller
Mitigation only
HIGH 7.5
CVE-2016-2280
Buffer overflow in RDISERVER in Honeywell Uniformance Process History Database (PHD) R310, R320, and R321 allows remote attackers to cause a denial o…
Uniformance Process History Database
Mitigation only
HIGH 9.3
CVE-2015-7908
Honeywell Midas gas detectors before 1.13b3 and Midas Black gas detectors before 2.13b3 allow remote attackers to discover cleartext passwords by sni…
Midas Firmware
after 2.13b1
HIGH 8.6
CVE-2015-7907
Directory traversal vulnerability in the web server on Honeywell Midas gas detectors before 1.13b3 and Midas Black gas detectors before 2.13b3 allows…
Midas Black Firmware
after 2.13b1
MEDIUM 6.8
CVE-2015-2848
Cross-site request forgery (CSRF) vulnerability in Honeywell Tuxedo Touch before 5.2.19.0_VA allows remote attackers to hijack the authentication of …
Tuxedo Touch
after 5.1.13.0_va