CVE-2020-6982: High severity Honeywell WIN-PAK vulnerability
Published Mar 24, 2020
·Updated
In Honeywell WIN-PAK 4.7.2, Web and prior versions, the header injection vulnerability has been identified, which may allow remote code execution.
Affected Software
1 affected component
Honeywell WIN-PAK<=4.7.2
Event History
Mar 24, 2020
CVE Published
via MITRE·08:04 PM
Data Sourced
via MITRE·08:04 PM
DescriptionWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-6982.
2
What is the severity of CVE-2020-6982?
The severity of CVE-2020-6982 is high with a CVSS score of 8.8.
3
What is the affected software for CVE-2020-6982?
The affected software for CVE-2020-6982 is Honeywell WIN-PAK versions up to and including 4.7.2.
4
What is the description of CVE-2020-6982?
CVE-2020-6982 is a header injection vulnerability in Honeywell WIN-PAK 4.7.2 and prior versions, which may allow remote code execution.
5
Is there a fix available for CVE-2020-6982?
To fix CVE-2020-6982, users should update to a version of Honeywell WIN-PAK that is not affected by the vulnerability.