VYPR

Vendor CVEs

Honeywell

All CVEs

132 total · sorted by risk
  • CVE-2023-5403HigApr 17, 2024
    risk 0.53cvss 8.1epss 0.01

    Server hostname translation to IP address manipulation which could lead to an attacker performing remote code execution or causing a failure. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-5401HigApr 17, 2024
    risk 0.53cvss 8.1epss 0.01

    Server receiving a malformed message based on a using the specified key values can cause a stack overflow vulnerability which could lead to an attacker performing remote code execution or causing a failure. See Honeywell Security Notification for recommendations on upgrading…

  • CVE-2023-5400HigApr 17, 2024
    risk 0.53cvss 8.1epss 0.01

    Server receiving a malformed message based on a using the specified key values can cause a heap overflow vulnerability which could lead to an attacker performing remote code execution or causing a failure.  See Honeywell Security Notification for recommendations on upgrading…

  • CVE-2023-5397HigApr 17, 2024
    risk 0.53cvss 8.1epss 0.01

    Server receiving a malformed message to create a new connection could lead to an attacker performing remote code execution or causing a failure. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-5395HigApr 17, 2024
    risk 0.53cvss 8.1epss 0.01

    Server receiving a malformed message that uses the hostname in an internal table may cause a stack overflow resulting in possible remote code execution. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-1841HigFeb 29, 2024
    risk 0.53cvss 8.1epss 0.00

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Honeywell MPA2 Access Panel (Web server modules) allows XSS Using Invalid Characters.This issue affects MPA2 Access Panel all version prior to R1.00.08.05.  Honeywell released…

  • CVE-2022-30319HigJul 28, 2022
    risk 0.53cvss 8.1epss 0.01

    Saia Burgess Controls (SBC) PCD through 2022-05-06 allows Authentication bypass. According to FSCT-2022-0062, there is a Saia Burgess Controls (SBC) PCD S-Bus authentication bypass issue. The affected components are characterized as: S-Bus (5050/UDP) authentication. The…

  • CVE-2017-14263HigSep 11, 2017
    risk 0.53cvss 8.1epss 0.04

    Honeywell NVR devices allow remote attackers to create a user account in the admin group by leveraging access to a guest account to obtain a session ID, and then sending that session ID in a userManager.addUser request to the /RPC2 URI. The attacker can login to the device with…

  • CVE-2022-30244HigJul 15, 2022
    risk 0.52cvss 8.0epss 0.01

    Honeywell Alerton Ascent Control Module (ACM) through 2022-05-04 allows unauthenticated programming writes from remote users. This enables code to be store on the controller and then run without verification. A user with malicious intent can send a crafted packet to change…

  • CVE-2021-47868HigJan 21, 2026
    risk 0.51cvss 7.8epss 0.00

    WIN-PACK PRO 4.8 contains an unquoted service path vulnerability in the WPCommandFileService that allows local users to potentially execute code with elevated privileges. Attackers can exploit the unquoted path in C:\Program Files \WINPAKPRO\WPCommandFileService Service.exe…

  • CVE-2023-6179HigNov 17, 2023
    risk 0.51cvss 7.8epss 0.00

    Honeywell ProWatch, 4.5, including all Service Pack versions, contain a Vulnerability in Application Server's executable folder(s). A(n) attacker could potentially exploit this vulnerability, leading to a standard user to have arbitrary system code execution. Honeywell…

  • CVE-2020-6968HigFeb 20, 2020
    risk 0.51cvss 7.8epss 0.00

    Honeywell INNCOM INNControl 3 allows workstation users to escalate application user privileges through the modification of local configuration files.

  • CVE-2025-2520HigJul 10, 2025
    risk 0.49cvss 7.5epss 0.00

    The Honeywell Experion PKS contains an Uninitialized Variable in the common Epic Platform Analyzer (EPA) communications. An attacker could potentially exploit this vulnerability, leading to a Communication Channel Manipulation, which results in a dereferencing of an…

  • CVE-2023-5392HigApr 11, 2024
    risk 0.49cvss 7.5epss 0.00

    C300 information leak due to an analysis feature which allows extracting more memory over the network than required by the function. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and…

  • CVE-2023-26597HigJul 13, 2023
    risk 0.49cvss 7.5epss 0.01

    Controller DoS due to buffer overflow in the handling of a specially crafted message received by the controller. See Honeywell Security Notification for recommendations on upgrading and versioning. See Honeywell Security Notification for recommendations on upgrading and…

  • CVE-2023-25948HigJul 13, 2023
    risk 0.49cvss 7.5epss 0.01

    Server information leak of configuration data when an error is generated in response to a specially crafted message. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-24474HigJul 13, 2023
    risk 0.49cvss 7.5epss 0.01

    Experion server may experience a DoS due to a heap overflow which could occur when handling a specially crafted message

  • CVE-2023-22435HigJul 13, 2023
    risk 0.49cvss 7.5epss 0.01

    Experion server may experience a DoS due to a stack overflow when handling a specially crafted message.

  • CVE-2021-38399HigOct 28, 2022
    risk 0.49cvss 7.5epss 0.01

    Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to relative path traversal, which may allow an attacker access to unauthorized files and directories.

  • CVE-2022-30313HigJul 28, 2022
    risk 0.49cvss 7.5epss 0.01

    Honeywell Experion PKS Safety Manager through 2022-05-06 has Missing Authentication for a Critical Function. According to FSCT-2022-0051, there is a Honeywell Experion PKS Safety Manager multiple proprietary protocols with unauthenticated functionality issue. The affected…

  • CVE-2021-39364HigFeb 24, 2022
    risk 0.49cvss 7.5epss 0.01

    Honeywell HDZP252DI 1.00.HW02.4 and HBW2PER1 1.000.HW01.3 devices allow command spoofing (for camera control) after ARP cache poisoning has been achieved.

  • CVE-2020-27295HigJan 26, 2021
    risk 0.49cvss 7.5epss 0.01

    The affected product has uncontrolled resource consumption issues, which may allow an attacker to cause a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).

  • CVE-2020-27274HigJan 26, 2021
    risk 0.49cvss 7.5epss 0.01

    Some parsing functions in the affected product do not check the return value of malloc and the thread handling the message is forced to close, which may lead to a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).

  • CVE-2020-10628HigJun 26, 2020
    risk 0.49cvss 7.5epss 0.01

    ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) exposes unencrypted passwords on the network.

  • CVE-2020-10624HigJun 26, 2020
    risk 0.49cvss 7.5epss 0.01

    ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) exposes a session token on the network.

  • CVE-2019-18230HigOct 31, 2019
    risk 0.49cvss 7.5epss 0.01

    Honeywell equIP and Performance series IP cameras, multiple versions, A vulnerability exists where the affected product allows unauthenticated access to audio streaming over HTTP.

  • CVE-2019-18228HigOct 31, 2019
    risk 0.49cvss 7.5epss 0.02

    Honeywell equIP series IP cameras Multiple equIP Series Cameras, A vulnerability exists in the affected products where a specially crafted HTTP packet request could result in a denial of service.

  • CVE-2014-5436HigApr 8, 2019
    risk 0.49cvss 7.5epss 0.03

    A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.2, which could lead to possible information disclosure. Honeywell strongly encourages and recommends all customers running…

  • CVE-2016-2280HigApr 21, 2016
    risk 0.49cvss 7.5epss 0.02

    Buffer overflow in RDISERVER in Honeywell Uniformance Process History Database (PHD) R310, R320, and R321 allows remote attackers to cause a denial of service (service outage) via unspecified vectors.

  • CVE-2023-5396HigApr 17, 2024
    risk 0.48cvss 7.4epss 0.01

    Server receiving a malformed message creates connection for a hostname that may cause a stack overflow resulting in possible remote code execution. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-5394HigApr 11, 2024
    risk 0.48cvss 7.4epss 0.01

    Server receiving a malformed message that where the GCL message hostname may be too large which may cause a stack overflow; resulting in possible remote code execution. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification…

  • CVE-2023-5393HigApr 11, 2024
    risk 0.48cvss 7.4epss 0.01

    Server receiving a malformed message that causes a disconnect to a hostname may causing a stack overflow resulting in possible remote code execution. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations…

  • CVE-2020-6978HigMar 24, 2020
    risk 0.47cvss 7.2epss 0.01

    In Honeywell WIN-PAK 4.7.2, Web and prior versions, the affected product is vulnerable due to the usage of old jQuery libraries.

  • CVE-2022-46361MedMay 30, 2023
    risk 0.45cvss 6.9epss 0.00

    An attacker having physical access to WDM can plug USB device to gain access and execute unwanted commands. A malicious user could enter a system command along with a backup configuration, which could result in the execution of unwanted commands. This issue affects OneWireless…

  • CVE-2025-12351MedOct 27, 2025
    risk 0.44cvss 6.8epss 0.00

    Honeywell S35 Series Cameras contains an authorization bypass Vulnerability through User controller key. An attacker could potentially exploit this vulnerability, leading to Privilege Escalation to admin privileged functionalities . Honeywell also recommends updating to the most…

  • CVE-2022-30316MedJul 28, 2022
    risk 0.44cvss 6.8epss 0.00

    Honeywell Experion PKS Safety Manager 5.02 has Insufficient Verification of Data Authenticity. According to FSCT-2022-0054, there is a Honeywell Experion PKS Safety Manager unauthenticated firmware update issue. The affected components are characterized as: Firmware update…

  • CVE-2022-30242MedJul 15, 2022
    risk 0.44cvss 6.8epss 0.01

    Honeywell Alerton Ascent Control Module (ACM) through 2022-05-04 allows unauthenticated configuration changes from remote users. This enables configuration data to be stored on the controller and then implemented. A user with malicious intent can send a crafted packet to change…

  • CVE-2023-3712MedSep 12, 2023
    risk 0.43cvss 6.6epss 0.01

    Files or Directories Accessible to External Parties vulnerability in Honeywell PM43 on 32 bit, ARM (Printer web page modules) allows Privilege Escalation.This issue affects PM43 versions prior to P10.19.050004.  Update to the latest available firmware version of the respective…

  • CVE-2025-2522MedJul 10, 2025
    risk 0.42cvss 6.5epss 0.00

    The Honeywell Experion PKS and OneWireless WDM contains Sensitive Information in Resource vulnerability in the component Control Data Access (CDA). An attacker could potentially exploit this vulnerability, leading to a Communication Channel Manipulation, which could result…

  • CVE-2023-51605MedMay 3, 2024
    risk 0.42cvss 6.5epss 0.01

    Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Honeywell Saia PG5 Controls Suite. User interaction is required to…

  • CVE-2023-51604MedMay 3, 2024
    risk 0.42cvss 6.5epss 0.01

    Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Honeywell Saia PG5 Controls Suite. User interaction is required to…

  • CVE-2023-51602MedMay 3, 2024
    risk 0.42cvss 6.5epss 0.01

    Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Honeywell Saia PG5 Controls Suite. User interaction is required to…

  • CVE-2023-51601MedMay 3, 2024
    risk 0.42cvss 6.5epss 0.01

    Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Honeywell Saia PG5 Controls Suite. User interaction is required to…

  • CVE-2023-51600MedMay 3, 2024
    risk 0.42cvss 6.5epss 0.01

    Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Honeywell Saia PG5 Controls Suite. User interaction is required to…

  • CVE-2023-36483MedMar 16, 2024
    risk 0.42cvss 6.5epss 0.00

    Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android  version 1.16.18 and earlier and MASmobile Classic iOS version 1.7.24 and earlier which allows remote attackers to retrieve sensitive data  including customer data, security system…

  • CVE-2024-1309MedFeb 13, 2024
    risk 0.42cvss 6.5epss 0.01

    Uncontrolled Resource Consumption vulnerability in Honeywell Niagara Framework on Windows, Linux, QNX allows Content Spoofing.This issue affects Niagara Framework: before Niagara AX 3.8.1, before Niagara 4.1.

  • CVE-2023-3711MedSep 12, 2023
    risk 0.42cvss 6.4epss 0.01

    Session Fixation vulnerability in Honeywell PM43 on 32 bit, ARM (Printer web page modules) allows Session Credential Falsification through Prediction.This issue affects PM43 versions prior to P10.19.050004. Update to the latest available firmware version of the respective…

  • CVE-2022-4240MedMay 30, 2023
    risk 0.42cvss 6.5epss 0.01

    Missing Authentication for Critical Function vulnerability in Honeywell OneWireless allows Authentication Bypass. This issue affects OneWireless version 322.1

  • CVE-2022-30312MedSep 7, 2022
    risk 0.42cvss 6.5epss 0.00

    The Trend Controls IC protocol through 2022-05-06 allows Cleartext Transmission of Sensitive Information. According to FSCT-2022-0050, there is a Trend Controls Inter-Controller (IC) protocol cleartext transmission of credentials issue. The affected components are characterized…

  • CVE-2022-30245MedJul 15, 2022
    risk 0.42cvss 6.5epss 0.01

    Honeywell Alerton Compass Software 1.6.5 allows unauthenticated configuration changes from remote users. This enables configuration data to be stored on the controller and then implemented. A user with malicious intent can send a crafted packet to change the controller…