Under certain circumstances the communication between exacqVision Client and exacqVision Server will use insufficient key length and exchange
Advisories
Source ID Title
EUVD EUVD EUVD-2024-30545 Under certain circumstances the communication between exacqVision Client and exacqVision Server will use insufficient key length and exchange
Fixes

Solution

Follow the guidance provided on the exacqVision Hardening Guide under the Password Strengthening section at https://www.johnsoncontrols.com/trust-center/cybersecurity/resources.


Workaround

No workaround given by the vendor.

History

Fri, 09 Aug 2024 19:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


Tue, 06 Aug 2024 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Johnsoncontrols
Johnsoncontrols exacqvision Client
Johnsoncontrols exacqvision Server
CPEs cpe:2.3:a:johnsoncontrols:exacqvision_client:*:*:*:*:*:*:*:*
cpe:2.3:a:johnsoncontrols:exacqvision_server:*:*:*:*:*:*:*:*
Vendors & Products Johnsoncontrols
Johnsoncontrols exacqvision Client
Johnsoncontrols exacqvision Server
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jci

Published:

Updated: 2024-08-06T20:35:07.083Z

Reserved: 2024-04-17T17:26:35.181Z

Link: CVE-2024-32758

cve-icon Vulnrichment

Updated: 2024-08-06T20:34:53.779Z

cve-icon NVD

Status : Analyzed

Published: 2024-08-01T22:15:24.640

Modified: 2024-08-09T19:00:17.183

Link: CVE-2024-32758

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.