CVE CVE-2020-6974 Mappings

Honeywell Notifier Web Server (NWS) Version 3.50 is vulnerable to a path traversal attack, which allows an attacker to bypass access to restricted directories. Honeywell has released a firmware update to address the problem.

Mappings

Capability ID Capability Description Mapping Type ATT&CK ID ATT&CK Name
CVE-2020-6974 Honeywell Notifier Web Server (NWS) uncategorized T1190 Exploit Public-Facing Application
CVE-2020-6974 Honeywell Notifier Web Server (NWS) uncategorized T1005 Data from Local System
CVE-2020-6974 Honeywell Notifier Web Server (NWS) uncategorized T1565 Data Manipulation