Filtered by vendor Johnsoncontrols Subscriptions
Filtered by product Metasys For Validated Environments Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-21936 1 Johnsoncontrols 2 Metasys Extended Application And Data Server, Metasys For Validated Environments 2024-09-16 8.1 High
On Metasys ADX Server version 12.0 running MVE, an Active Directory user could execute validated actions without providing a valid password when using MVE SMP UI.