Description
Honeywell Notifier Web Server (NWS) Version 3.50 is vulnerable to a path traversal attack, which allows an attacker to bypass access to restricted directories. Honeywell has released a firmware update to address the problem.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-28114 | Honeywell Notifier Web Server (NWS) Version 3.50 is vulnerable to a path traversal attack, which allows an attacker to bypass access to restricted directories. Honeywell has released a firmware update to address the problem. |
References
| Link | Providers |
|---|---|
| https://www.us-cert.gov/ics/advisories/icsa-20-051-03 |
|
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-04T09:18:02.542Z
Reserved: 2020-01-14T00:00:00.000Z
Link: CVE-2020-6974
No data.
Status : Modified
Published: 2020-04-07T18:15:13.773
Modified: 2024-11-21T05:36:24.960
Link: CVE-2020-6974
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD