The KT-1 door controller is susceptible to replay or man-in-the-middle attacks where an attacker can record and replay TCP packets. This issue affects Johnson Controls KT-1 all versions up to and including 3.01
Advisories
Source ID Title
EUVD EUVD EUVD-2021-14408 The KT-1 door controller is susceptible to replay or man-in-the-middle attacks where an attacker can record and replay TCP packets. This issue affects Johnson Controls KT-1 all versions up to and including 3.01
Fixes

Solution

Upgrade the KT-1 controller to version 3.04 and upgrade EntraPass to version 8.40.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jci

Published:

Updated: 2024-09-17T00:31:51.342Z

Reserved: 2021-02-24T00:00:00

Link: CVE-2021-27662

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-09-15T13:15:07.800

Modified: 2024-11-21T05:58:24.013

Link: CVE-2021-27662

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.