In Johnson Controls Metasys System Versions 8.0 and prior and BCPro (BCM) all versions prior to 3.0.2, this vulnerability results from improper error handling in HTTP-based communications with the server, which could allow an attacker to obtain technical information.
Metrics
Affected Vendors & Products
References
History
Tue, 17 Sep 2024 00:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In Johnson Controls Metasys System Versions 8.0 and prior and BCPro (BCM) all versions prior to 3.0.2, this vulnerability results from improper error handling in HTTP-based communications with the server, which could allow an attacker to obtain technical information. | In Johnson Controls Metasys System Versions 8.0 and prior and BCPro (BCM) all versions prior to 3.0.2, this vulnerability results from improper error handling in HTTP-based communications with the server, which could allow an attacker to obtain technical information. |
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2018-08-01T21:00:00Z
Updated: 2024-09-17T00:11:43.873Z
Reserved: 2018-05-01T00:00:00
Link: CVE-2018-10624
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-08-01T21:29:00.217
Modified: 2024-11-21T03:41:41.330
Link: CVE-2018-10624
Redhat
No data.