Honeywell OneWireless
Wireless Device Manager (WDM) for the following versions R310.x, R320.x, R321.x, R322.1, R322.2, R323.x, R330.1 contains a command injection vulnerability. An attacker who is authenticated could use the firmware update process to potentially exploit the vulnerability, leading to a command injection. Honeywell recommends updating to
R322.3, R330.2 or the most recent version of this product2.
CVSS
No CVSS.
References
| Link | Resource |
|---|---|
| https://process.honeywell.com/ |
Configurations
No configuration.
History
No history.
Information
Published : 2025-02-06 15:15
Updated : 2025-02-18 19:15
NVD link : CVE-2023-5878
Mitre link : CVE-2023-5878
CVE.ORG link : CVE-2023-5878
JSON object : View
Products Affected
No product.
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
