Description
An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.
Published: 2023-11-10
Score: 10 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update all Quantum HD Unity Compressor control panels to firmware version 11.22 (Q5) or 12.22 (Q6).

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-54648 An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.
History

Wed, 17 Dec 2025 05:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'Yes', 'Exploitation': 'None', 'Technical Impact': 'Total'}, 'version': '2.0.3'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 08 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'Yes', 'Exploitation': 'None', 'Technical Impact': 'Total'}, 'version': '2.0.3'}


Subscriptions

Johnsoncontrols Quantum Hd Unity Acuair Quantum Hd Unity Acuair Firmware Quantum Hd Unity Compressor Quantum Hd Unity Compressor Firmware Quantum Hd Unity Condenser\/vessel Quantum Hd Unity Condenser\/vessel Firmware Quantum Hd Unity Engine Room Quantum Hd Unity Engine Room Firmware Quantum Hd Unity Evaporator Quantum Hd Unity Evaporator Firmware Quantum Hd Unity Interface Quantum Hd Unity Interface Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: jci

Published:

Updated: 2025-12-16T18:23:26.662Z

Reserved: 2023-09-06T15:44:07.459Z

Link: CVE-2023-4804

cve-icon Vulnrichment

Updated: 2024-08-02T07:38:00.647Z

cve-icon NVD

Status : Modified

Published: 2023-11-10T23:15:07.743

Modified: 2024-11-21T08:36:00.130

Link: CVE-2023-4804

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses