Lucene search

K
cvelistIcscertCVELIST:CVE-2023-4212
HistoryAug 22, 2023 - 5:34 p.m.

CVE-2023-4212 Trane Thermostats Injection

2023-08-2217:34:12
CWE-74
icscert
www.cve.org
2
trane
thermostats
command injection
vulnerability
cve-2023-4212
trane xl824
trane xl850
trane xl1050
pivot
physical access
usb stick

CVSS3

6.8

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

18.9%

​A command injection vulnerability exists in Trane XL824, XL850, XL1050, and Pivot thermostats allowing an attacker to execute arbitrary commands as root using a specially crafted filename. The vulnerability requires physical access to the device via a USB stick.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "XL824 Thermostat",
    "vendor": "​Trane Technologies",
    "versions": [
      {
        "lessThanOrEqual": "5.9.8 ",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "XL850 Thermostat",
    "vendor": "​Trane Technologies",
    "versions": [
      {
        "lessThanOrEqual": "5.9.8",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "XL1050 Thermostat",
    "vendor": "​Trane Technologies",
    "versions": [
      {
        "lessThanOrEqual": "5.9.8 ",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Pivot Thermostat",
    "vendor": "Trane Technologies",
    "versions": [
      {
        "lessThanOrEqual": "1.8 ",
        "status": "affected",
        "version": "0",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

6.8

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

18.9%

Related for CVELIST:CVE-2023-4212