[Control systems] Johnson Controls security advisory (AV22-602)

Number: AV22-602
Date: 26 October 2022

On 25 October 2022, ICS-CERT published an ICS Advisory to highlight a vulnerability VulnerabilityA flaw or weakness in the design or implementation of an information system or its environment that could be exploited to adversely affect an organization's assets or operations. in the following product:

  • CEVAS – versions prior to 1.01.46

Exploitation of this vulnerability could result in information disclosure.

The Cyber Centre encourages users and administrators to review the provided web link, perform the suggested mitigations and apply the necessary updates.

Date modified: