Filtered by vendor Honeywell Subscriptions
Filtered by product Win-pak Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-7005 1 Honeywell 1 Win-pak 2020-03-27 8.8 High
In Honeywell WIN-PAK 4.7.2, Web and prior versions, the affected product is vulnerable to a cross-site request forgery, which may allow an attacker to remotely execute arbitrary code.
CVE-2020-6978 1 Honeywell 1 Win-pak 2020-03-27 7.2 High
In Honeywell WIN-PAK 4.7.2, Web and prior versions, the affected product is vulnerable due to the usage of old jQuery libraries.
CVE-2020-6982 1 Honeywell 1 Win-pak 2020-03-26 8.8 High
In Honeywell WIN-PAK 4.7.2, Web and prior versions, the header injection vulnerability has been identified, which may allow remote code execution.