← volver
CVE-2022-43485

Insecure random number used for generating keys for signing Jwt tokens

CVSS 6.2 MEDIUMEPSS 0.5%CWE-330
Use of Insufficiently Random Values in Honeywell OneWireless. This vulnerability may allow attacker to manipulate claims in client's JWT token. This issue affects OneWireless version 322.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:N/I:H/A:N
Productos afectados
Honeywell · OneWireless

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →