CVE-2024-6620
LOWHoneywell PC42t, PC42tp, and PC42d (Common Firmware) T10.19.020016-T10.20.060398 - Cross-Site Scripting
Title source: llmDescription
Honeywell PC42t, PC42tp, and PC42d Printers, T10.19.020016 to T10.20.060398, contain a cross-site scripting vulnerability. A(n) attacker could potentially inject malicious code which may lead to information disclosure, session theft, or client-side request forgery. Honeywell recommends updating to the most recent version of this firmware, PC42 Printer Firmware Version 20.6 T10.20.060398.
References (1)
Core 1
Core References
Various Sources vendor-advisory
https://sps.honeywell.com/us/en/support/productivity/cyber-security-notifications
Scores
CVSS v3
3.5
EPSS
0.0027
EPSS Percentile
18.5%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-602
CWE-79
Status
published
Products (1)
Honeywell/PC42t, PC42tp, and PC42d (Common Firmware)
T10.19.020016 - T10.20.060398
Published
Jul 29, 2024
Tracked Since
Feb 18, 2026