CVE-2021-36198: Entrapass
Published Dec 6, 2021
·Updated
Successful exploitation of this vulnerability could allow an unauthorized user to access sensitive data.
Affected Software
1 affected component
Johnsoncontrols Kantech Entrapass<8.40
Remediation
Information
Upgrade Entrapass to version 8.40.
Event History
Dec 6, 2021
CVE Published
via MITRE·04:54 PM
Data Sourced
via MITRE·04:54 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-36198?
The severity of CVE-2021-36198 is high with a CVSS score of 7.5.
2
How does CVE-2021-36198 impact Johnsoncontrols Kantech Entrapass software?
CVE-2021-36198 allows an unauthorized user to access sensitive data in Johnsoncontrols Kantech Entrapass software.
3
What version of Johnsoncontrols Kantech Entrapass is affected by CVE-2021-36198?
Version up to exclusive 8.40 of Johnsoncontrols Kantech Entrapass is affected by CVE-2021-36198.
4
Is there a fix available for CVE-2021-36198?
Johnsoncontrols has released a security advisory with mitigation steps for CVE-2021-36198. Please refer to the Johnsoncontrols security advisory for more details.
5
Where can I find more information about CVE-2021-36198?
You can find more information about CVE-2021-36198 on the official US-CERT website and the Johnsoncontrols security advisories page.