Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Honeywell — Vulnerabilities & Security Advisories 73

Browse all 73 CVE security advisories affecting Honeywell. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Honeywell operates as a global technology and manufacturing conglomerate, primarily providing industrial automation, building technologies, and performance materials. With seventy recorded Common Vulnerabilities and Exposures (CVEs), its software and connected devices frequently exhibit vulnerabilities related to remote code execution, cross-site scripting, and privilege escalation. These flaws often stem from legacy industrial control systems or web-based management interfaces that lack rigorous input validation or secure authentication mechanisms. Notable security characteristics include the complexity of integrating disparate operational technology with IT networks, which expands the attack surface. While no single catastrophic incident dominates the public record comparable to major ransomware events, the cumulative risk involves potential disruption to critical infrastructure and building management systems. The company continues to address these technical debt issues through firmware updates and enhanced security protocols, though the historical prevalence of these vulnerability classes highlights ongoing challenges in securing legacy industrial environments against modern cyber threats.

CVE ID Title CVSS Severity Published
CVE-2021-38395 Honeywell Experion PKS and ACE Controllers Injection — Experion PKS CWE-74 9.1 Critical 2022-10-28
CVE-2021-38399 Honeywell Experion PKS and ACE Controllers Relative Path Traversal — Experion PKS CWE-23 7.5 High 2022-10-28
CVE-2022-2332 Honeywell SoftMaster Incorrect Permission Assignment for Critical Resource — SoftMaster CWE-732 6.2 Medium 2022-09-16
CVE-2022-2333 Honeywell SoftMaster Uncontrolled Search Path Element — SoftMaster CWE-427 8.8 High 2022-09-16
CVE-2020-6972 Honeywell Notifier Web Server 安全漏洞 — Notifier Web Server (NWS) Version 3.50 and earlier CWE-294 7.4 - 2020-03-24
CVE-2020-6968 Honeywell INNCOM INNControl 3 安全漏洞 — INNCOM INNControl 3 CWE-269 7.8 - 2020-02-20
CVE-2019-13523 霍尼韦尔 Honeywell Performance HEN08104 访问控制错误漏洞 — Performance IP Cameras CWE-200 5.3 - 2019-09-26
CVE-2014-5435 Honeywell International Experion PKS 缓冲区错误漏洞 — Experion PKS CWE-123 9.8 - 2019-04-08
CVE-2014-5436 Honeywell International Experion PKS 路径遍历漏洞 — Experion PKS CWE-22 7.5 - 2019-04-08
CVE-2014-9186 Honeywell International Experion PKS 输入验证错误漏洞 — Experion PKS CWE-98 9.8 - 2019-04-08
CVE-2014-9187 Honeywell International Experion PKS 缓冲区错误漏洞 — Experion PKS CWE-122 9.8 - 2019-03-25
CVE-2014-9189 Honeywell International Experion PKS 缓冲区错误漏洞 — Experion PKS CWE-121 9.8 - 2019-03-25
CVE-2018-14825 多款Honeywell产品安全漏洞 — Mobile Computers CWE-269 6.7 - 2018-09-24

This page lists every published CVE security advisory associated with Honeywell. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.