Johnson Controls Simplex Incident Manager
View CSAF Summary Successful exploitation of this vulnerability could allow a local attacker with low privileges to extract user credentials (passwords and authentication tokens) from system memory, potentially leading to unauthorized access to the application and connected systems. The following versions of Johnson Controls Simplex Incident Manager are affected: Simplex Incident Manager <=V2.01 (CVE-2026-27875) CVSS Vendor Equipment Vulnerabilities v3 5.8 Johnson Controls Inc. Johnson Controls Simplex Incident Manager Cleartext Storage of Sensitive Information in Memory Background Critical Infrastructure Sectors: Critical Manufacturing, Commercial Facilities, Government Services and Facilities, Transportation Systems, Energy Countries/Areas Deployed: Worldwide Company Headquarters Location: Ireland Vulnerabilities Expand All + CVE-2026-27875 The Simplex Incident Manager application stores user credentials (such as passwords and authentication tokens) in an unencrypted form within system memory while running. This exposes sensitive information to potential extraction by anyone with local access to the system, including attackers leveraging memory-dumping tools or insiders with elev
Más de CISA — industrial system
- Schneider Electric PowerChute Serial Shutdown
- ABB Ability Edgenius
- Schneider Electric NetBotz 5 750/755
El resto de este hilo es para suscriptores
Cada comunicado de esta fuente en cuanto sale — y más de 80 hilos más, búsquedas guardadas y alertas instantáneas.
7 días, sin tarjeta.
Lea comunicados como este en cuanto salen.
1,400+ fuentes — en directo en PPN World ahora mismo. Cada comunicado de esta fuente en cuanto sale — y más de 80 hilos más, búsquedas guardadas y alertas instantáneas.
Empezar la prueba gratis →¿Su anuncio después? Distribuya su comunicado en los cables globales con PPN Source — y siga su repercusión aquí, en directo.
PPN Source →