CVE-2023-3710
Improper Input Validation vulnerability in Honeywell PM43 on 32 bit, ARM (Printer web page modules) allows Command Injection.This issue affects PM43 versions prior to P10.19.050004. Update to the latest available firmware version of the respective printers to version MR19.5 (e.g. P10.19.050006).
Published:Sep 12, 2023
Last Modified:Sep 12, 2025
EPS:Sep 12, 2023
EPSS Score:0.91702
CVSS Score:9.9
Affected Products
Vendor
Product
Action
Vendor
Honeywell
Product
Pc23 43
Honeywell
Pc23 43
Vendor
Honeywell
Product
Pd43
Honeywell
Pd43
Vendor
Honeywell
Product
Pm23 43
Honeywell
Pm23 43
Vendor
Honeywell
Product
Pm42
Honeywell
Pm42
Vendor
Honeywell
Product
Pm43
Honeywell
Pm43
Vendor
Honeywell
Product
Pm43 Firmware
Honeywell
Pm43 Firmware
Vendor
Honeywell
Product
Pm45
Honeywell
Pm45
Vendor
Honeywell
Product
Px240
Honeywell
Px240
Vendor
Honeywell
Product
Px45
Honeywell
Px45
Vendor
Honeywell
Product
Px45 65
Honeywell
Px45 65
Vendor
Honeywell
Product
Px4ie 6ie
Honeywell
Px4ie 6ie
Vendor
Honeywell
Product
Px940
Honeywell
Px940
Vendor
Honeywell
Product
Rp2f Rp4f
Honeywell
Rp2f Rp4f
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
