ICSA-23-040-03: Johnson controls system configuration tool (sct) vulnerability
Affected Software
2 affected componentsFixes available
Johnson Controls System Configuration Tool (SCT)<14.2.3
14.2.3
Johnson Controls System Configuration Tool (SCT)<15.0.3
15.0.3
Event History
Feb 22, 2025
Advisory Published
11:35 PM
Frequently Asked Questions
1
What is the severity of ICSA-23-040-03?
The severity of ICSA-23-040-03 is rated as high due to potential unauthorized access concerns.
2
How do I fix ICSA-23-040-03?
Fixing ICSA-23-040-03 involves applying the latest software update provided by Johnson Controls.
3
What systems are affected by ICSA-23-040-03?
ICSA-23-040-03 affects the Johnson Controls System Configuration Tool (SCT) software used in various control systems.
4
What are the potential risks associated with ICSA-23-040-03?
The potential risks include unauthorized changes to system configurations, leading to operational disruption or security breaches.
5
Is there a workaround for ICSA-23-040-03?
Currently, there is no effective workaround for ICSA-23-040-03, and users are advised to update their software as soon as possible.