Known Vulnerabilities for products from Johnsoncontrols
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Johnsoncontrols".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Additional devices specifications by Johnsoncontrols can be found at device.report : Johnsoncontrols
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-21661 json | Not Provided | 2026-05-06 | 2026-05-06 | |
| CVE-2023-4804 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 9.8 - CRITICAL | 2023-11-10 | 2023-11-16 |
| CVE-2023-3749 json | A local user could edit the VideoEdge configuration file and interfere with VideoEdge operation. | 5.5 - MEDIUM | 2023-08-03 | 2023-08-09 |
| CVE-2023-3548 json | An unauthorized user could gain account access to IQ Wifi 6 versions prior to 2.0.2 by conducting a brute force authenticatio... | 9.8 - CRITICAL | 2023-07-25 | 2023-08-03 |
| CVE-2023-3127 json | An unauthenticated user could log into iSTAR Ultra, iSTAR Ultra LT, iSTAR Ultra G2, and iSTAR Edge G2 with administrator righ... | 9.8 - CRITICAL | 2023-07-11 | 2023-07-20 |
| CVE-2023-2025 json | OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 may expose sensitive information to an unauthorized use... | 6.5 - MEDIUM | 2023-05-18 | 2023-05-25 |
| CVE-2023-2024 json | Improper authentication in OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 allow access to an unauthori... | 7.5 - HIGH | 2023-05-18 | 2023-05-25 |
| CVE-2023-0954 json | A debug feature in Sensormatic Electronics Illustra Pro Gen 4 Dome and PTZ cameras allows a user to compromise credentials af... | 9.8 - CRITICAL | 2023-06-08 | 2023-06-22 |
| CVE-2023-0248 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.3 - MEDIUM | 2023-12-14 | 2023-12-21 |
| CVE-2022-26643 json | An issue in EasyIO CPT Graphics v0.8 allows attackers to discover valid users in the application. | 5.3 - MEDIUM | 2022-04-13 | 2022-04-20 |
| CVE-2022-21941 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 9.8 - CRITICAL | 2022-08-31 | 2022-10-01 |
| CVE-2022-21940 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.1 - MEDIUM | 2023-02-09 | 2023-06-27 |
| CVE-2022-21939 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.1 - MEDIUM | 2023-02-09 | 2023-06-27 |
| CVE-2022-21938 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.4 - MEDIUM | 2022-06-15 | 2022-06-24 |
| CVE-2022-21937 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.4 - MEDIUM | 2022-06-15 | 2022-06-24 |
| CVE-2022-21936 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.5 - MEDIUM | 2022-10-07 | 2023-11-07 |
| CVE-2022-21935 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 7.5 - HIGH | 2022-06-15 | 2022-06-24 |
| CVE-2022-21934 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.8 - HIGH | 2022-05-06 | 2022-05-16 |
| CVE-2021-36207 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.8 - HIGH | 2022-04-29 | 2022-05-11 |
| CVE-2021-36206 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.1 - MEDIUM | 2022-10-28 | 2022-11-01 |
Known software with vulnerabilities from Johnsoncontrols
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Johnsoncontrols | Entrapass | - |
| Application | Johnsoncontrols | Exacqvision Server | 9.6 |
| Application | Johnsoncontrols | Kantech Entrapass | 8.22 |
| Application | Johnsoncontrols | Metasys Reporting Engine | 2.0 |
| Hardware | Johnsoncontrols | Pegasys P2000 Server | - |
| Application | Johnsoncontrols | Pegasys P2000 Server Software | 3.10 |