← Back to home
ICSA-22-034-01  ·  Published 2022-03-08  ·  View on CISA ICS-CERT ↗

Sensormatic PowerManage (Update A)

CVSS 10.0 CRITICAL CISA KEV — Known Exploited

Risk Summary

Successful exploitation of this vulnerability could allow an attacker to gain remote code execution.

CVEs (1)

Remediations

  • Upgrade PowerManage to Version 4.10
  • For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI-PSA-2022-01 v1

Affected Vendors

Sensormatic Electronics, LLC, Johnson Controls Inc.

Affected Products (1)

Sensormatic Electronics, LLC, Johnson Controls Inc. · PowerManage >= 4.0 | <= 4.8

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more