CVE-2022-34753
Schneider Electric SpaceLogic C-Bus Home Controller (5200WHC2) Remote Root
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
A CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remote root exploit when the command is compromised. Affected Products: SpaceLogic C-Bus Home Controller (5200WHC2), formerly known as C-Bus Wiser Homer Controller MK2 (V1.31.460 and prior)
Una CWE-78: Se presenta una vulnerabilidad de Neutralización Inapropiada de Elementos Especiales usados en un Comando del Sistema Operativo ("Inyección de comandos del SO") que podría causar una explotación remota de root cuando el comando está comprometido. Productos afectados: SpaceLogic C-Bus Home Controller (5200WHC2), anteriormente conocido como C-Bus Wiser Homer Controller MK2 (versiones V1.31.460 y anteriores)
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-06-28 CVE Reserved
- 2022-07-13 CVE Published
- 2023-09-22 First Exploit
- 2024-09-16 CVE Updated
- 2024-09-19 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC
References (3)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Schneider-electric Search vendor "Schneider-electric" | Spacelogic C-bus Home Controller Firmware Search vendor "Schneider-electric" for product "Spacelogic C-bus Home Controller Firmware" | <= 1.31.460 Search vendor "Schneider-electric" for product "Spacelogic C-bus Home Controller Firmware" and version " <= 1.31.460" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Spacelogic C-bus Home Controller Search vendor "Schneider-electric" for product "Spacelogic C-bus Home Controller" | - | - |
Safe
|