Known vulnerabilities in WIN-PAK
Vendor:
Honeywell International, Inc
Software:
WIN-PAK
Software CPE:
cpe:2.3:a:honeywell_international:win-pak:*:*:*:*:*:*:*:*
Website:
https://www.honeywell.com/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU25607 - Use of Obsolete Function CVE-2020-6978 |
CWE-477 | Medium | 4.7.2 B1072.3.4 | 26.02.2020 |
SB2020022605 |
||
| #VU25606 - Improper Neutralization of HTTP Headers for Scripting Syntax CVE-2020-6982 |
CWE-644 | Medium | 4.7.2 B1072.3.4 | 26.02.2020 |
SB2020022605 |
||
| #VU25605 - Cross-Site Request Forgery (CSRF) CVE-2020-7005 |
CWE-352 | Low | 4.7.2 B1072.3.4 | 26.02.2020 |
SB2020022605 |