First published: Tue May 30 2023(Updated: )
Missing Authentication for Critical Function vulnerability in Honeywell OneWireless allows Authentication Bypass. This issue affects OneWireless version 322.1
Credit: psirt@honeywell.com
Affected Software | Affected Version | How to fix |
---|---|---|
Honeywell Onewireless Network Wireless Device Manager Firmware | <r322.2 | |
Honeywell Onewireless Network Wireless Device Manager |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-4240 is high with a score of 7.5.
CVE-2022-4240 refers to a Missing Authentication for Critical Function vulnerability in Honeywell OneWireless that allows authentication bypass.
OneWireless version 322.1 is affected by CVE-2022-4240.
To fix CVE-2022-4240, update to a version of OneWireless that is higher than or equal to 322.2.
The Common Weakness Enumeration (CWE) ID associated with CVE-2022-4240 is CWE-306.