Under certain circumstances the ExacqVision Web Services does not provide sufficient protection from untrusted domains.
Solution:
The product uses a cross-domain policy file that includes domains that should not be trusted.
The product compares two entities in a security-relevant context, but the comparison is incorrect, which may lead to resultant weaknesses.
Link | Tags |
---|---|
https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories | vendor advisory |
https://www.cisa.gov/news-events/ics-advisories/icsa-24-214-02 | third party advisory us government resource |