CVE-2023-3711: Potential Predictable Session ID
Session Fixation vulnerability in Honeywell PM43 on 32 bit, ARM (Printer web page modules) allows Session Credential Falsification through Prediction.This issue affects PM43 versions prior to P10.19.050004. Update to the latest available firmware version of the respective printers to version MR19.5 (e.g. P10.19.050006).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3711?
The severity of CVE-2023-3711 is high with a severity value of 8.8.
What is the description of CVE-2023-3711?
CVE-2023-3711 is a Session Fixation vulnerability in Honeywell PM43 on 32 bit, ARM (Printer web page modules) that allows Session Credential Falsification through Prediction.
What software is affected by CVE-2023-3711?
The affected software is Honeywell Pm43 Firmware versions prior to P10.19.050004.
How can I fix CVE-2023-3711?
To fix CVE-2023-3711, update to the latest available firmware version of the Honeywell PM43 printers, specifically version MR19.5.
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-3711?
The CWE ID for CVE-2023-3711 is 384.