CVE

Id
80124  
CVE No.
CVE-2015-2847  
Status
Candidate  
Description
Honeywell Tuxedo Touch before 5.2.19.0_VA relies on client-side authentication involving JavaScript, which allows remote attackers to bypass intended access restrictions by removing USERACCT requests from the client-server data stream.  
Phase
Assigned (20150403)  
Votes
None (candidate not yet proposed)  
Comments