CVE-2025-61740: Johnson Controls IQ Panels2, 2+, IQHub, IQPanel 4, PowerG Origin Validation Error
Authentication issue that does not verify the source of a packet which could allow an attacker to create a denial-of-service condition or modify the configuration of the device.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-61740?
CVE-2025-61740 is considered a high-severity vulnerability due to its potential to cause denial-of-service conditions and unauthorized configuration changes.
How do I fix CVE-2025-61740?
To mitigate CVE-2025-61740, ensure that you apply the latest security patches and updates provided by Johnson Controls for affected devices.
What devices are affected by CVE-2025-61740?
CVE-2025-61740 affects various devices including Johnson Controls IQ Panels2, IQ Panel 2+, IQHub, IQPanel 4, and PowerG.
What risks are associated with CVE-2025-61740?
The main risks of CVE-2025-61740 include potential denial-of-service attacks and unauthorized modifications to device configurations.
Is CVE-2025-61740 remotely exploitable?
Yes, CVE-2025-61740 can be remotely exploited if the attacker can send malicious packets to the vulnerable device.