CVEs we hold for Honeywell
Records whose assigning authority named Honeywell as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-5434Improper storage of sensitive informationHoneywell International Inc. Control Network Module (CNM)
CVE-2026-4272CVE-2026-4272 - Bluetooth Remote Execution of System Commands VulnerabilityHoneywell Barcode Scanners
CVE-2026-3611Honeywell IQ4x BMS Controller Missing authentication for critical functionHoneywell IQECO
CVE-2026-17612Audit Log Exposure through Unauthorized AccessHoneywell S35 Series 3M/5M/8M/PinHole Cameras
CVE-2026-13742Lack of signature verification before execution of downloaded contentHoneywell Technologies IQ MultiAccess
CVE-2025-3947Integer underflow during processing of short network packets in CDA FTEB responderHoneywell C200E
CVE-2025-3946Incorrect response generation during FTEB protocol processingHoneywell Wireless Device Manager
CVE-2025-2523Lack of buffer clearing before reuse may result in incorrect system behavior.Honeywell Wireless Device Manager
CVE-2025-2522Lack of buffer clearing before reuse may result in incorrect system behavior.Honeywell Wireless Device Manager
CVE-2025-2521Lack of indexes’ validation against buffer borders leads to remote code execution.Honeywell Wireless Device Manager
CVE-2025-12351Inadequate access control measure allows unauthorized users to access restricted administrative functionsHoneywell S35 Thermal Camera
CVE-2024-1309Resource Consumption Identified in NTP before 4.2.4p8 and 4.2.5Honeywell Niagara Framework
CVE-2023-5878OneWireless command injection possible when updating firmwareHoneywell OneWireless Network Wireless Device Manager
CVE-2023-51605Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure VulnerabilityHoneywell Saia PG5 Controls Suite
CVE-2023-51604Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure VulnerabilityHoneywell Saia PG5 Controls Suite
CVE-2023-51603Honeywell Saia PG5 Controls Suite CAB File Parsing Directory Traversal Remote Code Execution VulnerabilityHoneywell Saia PG5 Controls Suite
CVE-2023-51602Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure VulnerabilityHoneywell Saia PG5 Controls Suite
CVE-2023-51601Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure VulnerabilityHoneywell Saia PG5 Controls Suite
CVE-2023-51600Honeywell Saia PG5 Controls Suite XML External Entity Processing Information Disclosure VulnerabilityHoneywell Saia PG5 Controls Suite
CVE-2023-51599Honeywell Saia PG5 Controls Suite Directory Traversal Remote Code Execution VulnerabilityHoneywell Saia PG5 Controls Suite
CVE-2023-24474Server deserialization missing boundary checks - heap overflow in communication between server and controllerHoneywell Direct Station
CVE-2023-22435Server bad parsing implementation - stack overflow in server::get_db_path_for_driverHoneywell Direct Station
CVE-2022-46361Physical access to the WDM enables use of USB device to gain access to the WDMHoneywell OneWireless
CVE-2022-43485Insecure random number used for generating keys for signing Jwt tokensHoneywell OneWireless
CVE-2022-4240Unauthenticated API allowing an attacker to obtain the information about network resourcesHoneywell OneWireless
CVE-2022-2332Honeywell SoftMaster Incorrect Permission Assignment for Critical ResourceHoneywell SoftMaster
CVE-2021-38399Honeywell Experion PKS and ACE Controllers Relative Path TraversalHoneywell Experion PKS
CVE-2021-38397Honeywell Experion PKS and ACE Controllers Unrestricted Upload of File with Dangerous TypeHoneywell Experion PKS
90 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.