Vulnerabilities > CVE-2020-27297 - Out-of-bounds Write vulnerability in Honeywell OPC UA Tunneller

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
honeywell
CWE-787

Summary

The affected product is vulnerable to a heap-based buffer overflow, which may allow an attacker to manipulate memory with controlled values and remotely execute code on the OPC UA Tunneller (versions prior to 6.3.0.8233).

Vulnerable Configurations

Part Description Count
Application
Honeywell
1

Common Weakness Enumeration (CWE)