CVE-2021-27663: CEM Systems AC2000
A vulnerability in versions 10.1 through 10.5 of Johnson Controls CEM Systems AC2000 allows a remote attacker to access to the system without adequate authorization. This issue affects: Johnson Controls CEM Systems AC2000 10.1; 10.2; 10.3; 10.4; 10.5.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2021-27663?
The severity of CVE-2021-27663 is critical with a CVSS score of 9.8.
What is the description of CVE-2021-27663?
CVE-2021-27663 is a vulnerability in versions 10.1 through 10.5 of Johnson Controls CEM Systems AC2000 that allows a remote attacker to access the system without proper authorization.
Which software versions are affected by CVE-2021-27663?
Versions 10.1 through 10.5 of Johnson Controls CEM Systems AC2000 are affected by CVE-2021-27663.
How can I fix CVE-2021-27663?
To fix CVE-2021-27663, it is recommended to update Johnson Controls CEM Systems AC2000 to a patched version or apply the necessary security updates provided by Johnson Controls.
Where can I find more information about CVE-2021-27663?
You can find more information about CVE-2021-27663 on the official security advisories from Johnson Controls and the US-CERT website.