CVE-2020-27297: Honeywell Opc Ua Tunneller

Critical severity, CVSS 9.8. EPSS: 2.4% chance of exploitation in the next 30 days.

The affected product is vulnerable to a heap-based buffer overflow, which may allow an attacker to manipulate memory with controlled values and remotely execute code on the OPC UA Tunneller (versions prior to 6.3.0.8233).

Affected products

  • Honeywell Opc Ua Tunneller: before 6.3.0.8233 (fixed in 6.3.0.8233)

Published 2021-01-26. Last modified 2026-06-17.