CVE-2020-6972

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/03/2020
Last modified:
27/03/2020

Description

In Notifier Web Server (NWS) Version 3.50 and earlier, the Honeywell Fire Web Server’s authentication may be bypassed by a capture-replay attack from a web browser.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:honeywell:notifier_webserver:*:*:*:*:*:*:*:* 3.50 (including)


References to Advisories, Solutions, and Tools