CVE-2024-6620

H

oneywell PC42t, PC42tp, and PC42d Printers, T10.19.020016 to T10.20.060398, contain a cross-site scripting vulnerability. A(n) attacker could potentially inject malicious code which may lead to information disclosure, session theft, or client-side request forgery. Honeywell recommends updating to the most recent version of this firmware, PC42 Printer Firmware Version 20.6 T10.20.060398.

Configurations

No configuration.

History

21 Nov 2024, 09:50

Type Values Removed Values Added
References () https://sps.honeywell.com/us/en/support/productivity/cyber-security-notifications - () https://sps.honeywell.com/us/en/support/productivity/cyber-security-notifications -

30 Jul 2024, 13:33

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-29 20:15

Updated : 2024-11-21 09:50


NVD link : CVE-2024-6620

Mitre link : CVE-2024-6620

CVE.ORG link : CVE-2024-6620


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-602

Client-Side Enforcement of Server-Side Security