CVE-2023-5878 – Honeywell OneWireless Wireless Command Injection Vulnerability

CVE ID : CVE-2023-5878

Published : Feb. 6, 2025, 3:15 p.m. | 4 hours, 50 minutes ago

Description : Honeywell OneWireless

Wireless Device Manager (WDM) for the following versions R310.x, R320.x, R321.x, R322.1, R322.2, R323.x, R330.1 contains a command injection vulnerability. An attacker who is authenticated could use the firmware update process to potentially exploit the vulnerability, leading to a command injection. Honeywell recommends updating to

R322.3, R330.2 or the most recent version of this product2.

Severity: 9.1 | CRITICAL

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Go to Source