PT-2026-42440 · Honeywell Internatioinal · Control Network Module

Published

2026-05-21

·

Updated

2026-05-21

·

CVE-2026-5433

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Honeywell Control Network Module (CNM) contains command injection vulnerability in the web interface. An attacker could exploit this vulnerability via command delimiters, potentially resulting in Remote Code Execution (RCE).

Fix

Related Identifiers

CVE-2026-5433

Affected Products

Control Network Module