CVE-2026-27873: Medium severity Johnson Controls EasyIO FG vulnerability
Published Oct 1, 2026
·Updated
- Use of Hard-coded Credentials vulnerability in Johnson Controls EasyIO FG allows - Pasword Spraying.
This issue affects EasyIO FG: before 2.0b52.
Affected Software
1 affected component
Johnson Controls EasyIO FG<2.0b52
Event History
Oct 1, 2026
CVE Published
via MITRE·09:27 PM
Data Sourced
via MITRE·09:27 PM
DescriptionWeakness
Data Sourced
via NVD·10:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which EasyIO FG versions are affected?
Johnson Controls EasyIO FG versions before 2.0b52 are affected.
2
What type of attack does this issue enable?
The issue involves hard-coded credentials and allows password-spraying attacks.