ICSA-24-158-04: : Johnson Controls Inc. Software House iStar Pro, Edge and eX door controllers: all versions vulnerability
Affected Software
3 affected components
: Johnson Controls Inc. Software House iStar Pro, Edge and eX door controllers: all versions
: Johnson Controls Inc. Software House iStar Ultra and Ultra LT door controllers: Firmware prior to 6.6.B
: Johnson Controls Inc. iSTAR Configuration Utility (ICU) Tool
Event History
May 1, 2026
Advisory Published
01:09 AM
Data Sourced
01:09 AM
Affected Software
Frequently Asked Questions
1
What is the severity of ICSA-24-158-04?
The severity of ICSA-24-158-04 is considered critical due to its potential to allow unauthorized access to physical security systems.
2
How do I fix ICSA-24-158-04?
To fix ICSA-24-158-04, update the affected Johnson Controls software and firmware to the latest versions provided by the vendor.
3
What products are affected by ICSA-24-158-04?
ICSA-24-158-04 affects Johnson Controls Inc. Software House iStar Pro, Edge, eX door controllers, and Ultra and Ultra LT door controllers with firmware prior to version 6.6.B.
4
What vulnerabilities are associated with ICSA-24-158-04?
ICSA-24-158-04 associates vulnerabilities that could lead to unauthorized access and control over security doors and access points.
5
Is there a patch available for ICSA-24-158-04?
Yes, patches are available for the affected products, and users should refer to Johnson Controls for the correct updates.