← back
CVE-2022-43485

Insecure random number used for generating keys for signing Jwt tokens

CVSS 6.2 MEDIUMEPSS 0.5%CWE-330
Use of Insufficiently Random Values in Honeywell OneWireless. This vulnerability may allow attacker to manipulate claims in client's JWT token. This issue affects OneWireless version 322.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:N/I:H/A:N
Affected products
Honeywell · OneWireless

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →