Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Honeywell Alerton Ascent Control Module (ACM) through 2022-05-04 allows unauthenticated programming writes from remote users. This enables code to be store on the controller and then run without verification. A user with malicious intent can send a crafted packet to change and/or stop the program without the knowledge of other users, altering the controller's function. After the programming change, the program needs to be overwritten in order for the controller to restore its original operational function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Honeywell Alerton Ascent Control Module 安全漏洞
Vulnerability Description
Honeywell Alerton Ascent Control Module是USAHoneywell公司的一款高性能、符合 BACnet 的集成楼宇控制器和路由器。可以支持 BACnet/以太网、BACnet/IP 和 BACnet/MSTP。 Honeywell Alerton Ascent Control Module (ACM) 2022-05-04 及之前版本存在安全漏洞,攻击者利用该漏洞可以发送一个精心制作的数据包来更改和/或停止程序,从而改变控制器的功能。
CVSS Information
N/A
Vulnerability Type
N/A