PT-2026-22324 · Johnson Controls · Quantum Hd

·

CVE-2026-21658

·

Publicado

2026-02-27

·

Atualizado

2026-03-04

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Johnson Controls Frick Controls Quantum HD versions prior to 10.22
Description A flaw exists in Johnson Controls Frick Controls Quantum HD that allows for the execution of code remotely without authentication. This is due to insufficient validation of input parameters, potentially enabling unexpected actions. The issue is a type of code injection.
Recommendations Update to a version newer than 10.22.

Correção

RCE

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-21658

Produtos afetados

Quantum Hd