60
CVE-2021-38399
—CVSS 3.1
7.5 high
EPSS
<1%p54
Published
()
Modified
Description
Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to relative path traversal, which may allow an attacker access to unauthorized files and directories.
- Vendors
- honeywell
- Products
- c200 firmware, c200e firmware, c300 firmware, application control environment firmware
- Weakness
- CWE-23, CWE-22
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N