CVE Published: 24/03/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: icscert |
Vendor: Honeywell |
Product: Notifier Web Server (NWS) Version 3.50 and earlier Status : PUBLISHED
CVE-2020-6972 Description
In Notifier Web Server (NWS) Version 3.50 and earlier, the Honeywell Fire Web Server’s authentication may be bypassed by a capture-replay attack from a web browser.