news.mlab.sh
Back to the feed
vulnerability

Johnson Controls EasyIO Neo Series EC and CW Controllers

Medium
Summary

A vulnerability in Johnson Controls EasyIO Neo Series EC and CW Controllers allows an attacker to intercept and read sensitive information, including credentials and session data, transmitted over the network. Johnson Controls has released fixed versions, and users are advised to upgrade immediately or implement mitigations such as disabling HTTP access and placing devices on an isolated network.

Read the full article at CISA Advisories

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Also covered by 1 other source(s)

Report an error
Confirmed errors are fixed and listed on /corrections.