First published: Thu Feb 20 2020(Updated: )
Honeywell INNCOM INNControl 3 allows workstation users to escalate application user privileges through the modification of local configuration files.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Honeywell Inncom Inncontrol Firmware | >=3.0<=3.21 | |
Honeywell INNCOM INNControl |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-6968 is a vulnerability affecting Honeywell INNCOM INNControl 3, which allows workstation users to escalate application user privileges through the modification of local configuration files.
The severity of CVE-2020-6968 is high with a CVSS score of 7.8.
The versions affected by CVE-2020-6968 range from 3.0 to 3.21 of Honeywell INNCOM INNControl firmware.
Workstation users can exploit CVE-2020-6968 by modifying local configuration files to escalate their application user privileges.
To address the vulnerability, it is recommended to apply the latest patches or updates provided by Honeywell for INNCOM INNControl firmware.