Under certain circumstances IQ Panel4 and IQ4 Hub panel software prior to version 4.4.2 could allow unauthorized access to settings.
References
Link | Resource |
---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-24-039-01 | Third Party Advisory US Government Resource |
https://www.johnsoncontrols.com/cyber-solutions/security-advisories | Product |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
15 Feb 2024, 19:08
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.johnsoncontrols.com/cyber-solutions/security-advisories - Product | |
References | () https://www.cisa.gov/news-events/ics-advisories/icsa-24-039-01 - Third Party Advisory, US Government Resource | |
CPE | cpe:2.3:h:johnsoncontrols:qolsys_iq_panel_4:-:*:*:*:*:*:*:* cpe:2.3:o:johnsoncontrols:qolsys_iq_panel_4_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:johnsoncontrols:qolsys_iq4_hub_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:johnsoncontrols:qolsys_iq4_hub:-:*:*:*:*:*:*:* |
|
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
First Time |
Johnsoncontrols qolsys Iq Panel 4
Johnsoncontrols Johnsoncontrols qolsys Iq Panel 4 Firmware Johnsoncontrols qolsys Iq4 Hub Johnsoncontrols qolsys Iq4 Hub Firmware |
08 Feb 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-08 20:15
Updated : 2024-02-28 20:54
NVD link : CVE-2024-0242
Mitre link : CVE-2024-0242
CVE.ORG link : CVE-2024-0242
JSON object : View
Products Affected
johnsoncontrols
- qolsys_iq4_hub
- qolsys_iq_panel_4
- qolsys_iq4_hub_firmware
- qolsys_iq_panel_4_firmware
CWE