Vulnerabilities > Honeywell > OPC UA Tunneller > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-01-26 CVE-2020-27297 Out-of-bounds Write vulnerability in Honeywell OPC UA Tunneller
The affected product is vulnerable to a heap-based buffer overflow, which may allow an attacker to manipulate memory with controlled values and remotely execute code on the OPC UA Tunneller (versions prior to 6.3.0.8233).
network
low complexity
honeywell CWE-787
critical
9.8
2021-01-26 CVE-2020-27299 Out-of-bounds Read vulnerability in Honeywell OPC UA Tunneller
The affected product is vulnerable to an out-of-bounds read, which may allow an attacker to obtain and disclose sensitive data information or cause the device to crash on the OPC UA Tunneller (versions prior to 6.3.0.8233).
network
low complexity
honeywell CWE-125
critical
9.1