You are here

Johnson Controls exacqVision Enterprise System Manager (ICSA-19-164-01)

Johnson Controls exacqVision Enterprise System Manager (ICSA-19-164-01)

Created: Monday, June 17, 2019 - 16:09
Categories:
Cybersecurity

The NCCIC has published an advisory on an improper authorization vulnerability in Johnson Controls exacqVision Enterprise System Manager. Versions 5.12.2 and prior are affected. Successful exploitation of this vulnerability could allow malicious code execution. Johnson Controls recommends upgrading to the latest product, version 19.03. The NCCIC also advises of a series of mitigating measures for these vulnerabilities. Read the advisory at NCCIC/ICS-CERT.