Honeywell Update
2631Warning Date
Severity Level
Warning Number
Target Sector
26 February, 2020
● High
2020-962
All
Description:
Honeywell has released security update to multiple vulnerabilities in the following product:
- WIN-PAK 4.7.2
- Web and prior versions
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Cross-site request forgery (CSRF).
- Execute arbitrary code remotely.
- Code Injection.
Best practice and Recommendations:
The CERT team encourages users to review Honeywell security advisory by following the below link: