# CVE-2026-5434

## Summary

- **CVE ID:** CVE-2026-5434
- **Severity:** MEDIUM
- **CVSS Score:** 5.9 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N)
- **CWE:** CWE-538
- **Published:** May 21, 2026
- **Last Modified:** Jul 30, 2026

## Description

Honeywell Control
Network Module (CNM) contains
insertion of sensitive information into an unintended directory. An attacker could exploit this vulnerability through probing
system files, potentially resulting in unintended
access to protected data.

## Affected Products

- Honeywell International Inc. — Control Network Module (CNM) (100.1)

## References

- [CNA](https://process.honeywell.com/)
- [CNA](https://www.honeywell.com/us/en/product-security)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.21%
- **EPSS Percentile:** 11.0

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._