Honeywell FALCON XL Web Controller Multiple Vulnerabilities

High Nessus Plugin ID 77375


The remote host is affected by multiple vulnerabilities.


The remote host is a Honeywell FALCON XL Web SCADA controller that is running a firmware version affected by the following vulnerabilities :

- The change password page can be accessed without authentication to determine users' password hashes, which can allow a remote attacker to gain administrative access. (CVE-2014-2717)

- The web server on the device is affected by multiple cross-site scripting vulnerabilities. (CVE-2014-3110)


Contact the vendor for the latest available updates.

See Also

Plugin Details

Severity: High

ID: 77375

File Name: scada_xlweb_2_2_11.nbin

Version: $Revision: 1.21 $

Type: remote

Family: SCADA

Published: 2014/08/25

Modified: 2018/01/29

Dependencies: 77374

Risk Information

Risk Factor: High


Base Score: 7.6

Temporal Score: 6.6

Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:ND/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/h:honeywell:falcon_xlweb_xlwebexe

Required KB Items: Host/XLWeb/xlweb-version

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2014/07/23

Vulnerability Publication Date: 2014/07/23

Reference Information

CVE: CVE-2014-2717, CVE-2014-3110

BID: 68837, 68838

OSVDB: 109479, 109480