Vulnerabilities · InfosecFeed Brief

Johnson Controls Simplex Incident Manager

Vulnerabilities

What you need to know

Successful exploitation of this vulnerability could allow a local attacker with low privileges to extract user credentials (passwords and authentication tokens) from system memory, potentially leading to unauthorized access to the application and connected systems. The following versions of Johnson Controls Simplex Incident Manager are affected: Simplex…

Source transparency

This is an InfosecFeed curated brief based on reporting from CISA Alerts. InfosecFeed does not claim ownership of the original reporting.

Read the original report at CISA Alerts ↗