High severity8.8NVD Advisory· Published Jul 13, 2022· Updated Jun 17, 2026
CVE-2022-34753
CVE-2022-34753
Description
A CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remote root exploit when the command is compromised. Affected Products: SpaceLogic C-Bus Home Controller (5200WHC2), formerly known as C-Bus Wiser Homer Controller MK2 (V1.31.460 and prior)
Affected products
4<=V1.31.460+ 1 more
- (no CPE)range: <=V1.31.460
- (no CPE)range: 5200WHC2
- Range: <=V1.31.460
- cpe:2.3:o:schneider-electric:spacelogic_c-bus_home_controller_firmware:*:*:*:*:*:*:*:*Range: <=1.31.460
Patches
Vulnerability mechanics
References
2- download.schneider-electric.com/filesnvdPatchVendor Advisory
- packetstormsecurity.com/files/167783/Schneider-Electric-SpaceLogic-C-Bus-Home-Controller-5200WHC2-Remote-Root.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.