CVE-2026-34492: Airwall - Arbitrary file read
Published Aug 14, 2026
·Updated
External control of file name or path vulnerability in Johnson Controls Airwall allows : File Manipulation.
This issue affects Airwall: before 4.1.
Affected Software
1 affected component
Airwall<4.1
Event History
Aug 14, 2026
CVE Published
via MITRE·07:32 PM
Data Sourced
via MITRE·07:32 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-34492?
CVE-2026-34492 has a risk score of 45.
2
How do I fix CVE-2026-34492?
To remediate CVE-2026-34492, update Airwall to version 4.1 or later.
3
What is the impact of CVE-2026-34492?
CVE-2026-34492 allows for arbitrary file read, leading to potential file manipulation.
4
Which versions of Airwall are affected by CVE-2026-34492?
CVE-2026-34492 affects Airwall before version 4.1.
5
Who is affected by CVE-2026-34492?
Organizations using Airwall versions prior to 4.1 are vulnerable to CVE-2026-34492.