Vulnerability Details CVE-2020-10624
ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) exposes a session token on the network.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 30.9%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2020-10624
-
cpe:2.3:h:honeywell:controledge_plc:-
-
cpe:2.3:h:honeywell:controledge_rtu:-
-
cpe:2.3:o:honeywell:controledge_plc_firmware:r130.2
-
cpe:2.3:o:honeywell:controledge_plc_firmware:r140
-
cpe:2.3:o:honeywell:controledge_plc_firmware:r150
-
cpe:2.3:o:honeywell:controledge_plc_firmware:r151
-
cpe:2.3:o:honeywell:controledge_rtu_firmware:r101
-
cpe:2.3:o:honeywell:controledge_rtu_firmware:r110
-
cpe:2.3:o:honeywell:controledge_rtu_firmware:r140
-
cpe:2.3:o:honeywell:controledge_rtu_firmware:r150
-
cpe:2.3:o:honeywell:controledge_rtu_firmware:r151