Description
External control of file name or path vulnerability in Johnson Controls Airwall allows : File Manipulation.

This issue affects Airwall: before 4.1.
Published: 2026-08-14
Score: 7 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

External control of a file name or path in Johnson Controls Airwall before version 4.1 permits attackers to read arbitrary files, a vulnerability classified as CWE-73. This enables unauthorized file access and the potential disclosure of sensitive configuration data or system files, compromising confidentiality and providing footholds for further exploits.

Affected Systems

Johnson Controls Airwall, all versions prior to 4.1, on any platform where the product is deployed, are affected.

Risk and Exploitability

The CVSS score of 7.0 indicates a moderate severity. EPSS is not available, and the vulnerability is not yet listed in CISA KEV, suggesting limited publicly known exploitation. The likely attack vector involves any source that can interact with the Airwall component, such as network or remote configuration interfaces, where an attacker can supply a crafted file name or path. Successful exploitation requires sufficient privileges to read the target file and basic input validation bypass; no additional authentication or privilege escalation is needed beyond normal access to Airwall.

Generated by OpenCVE AI on August 14, 2026 at 20:35 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Johnson Controls Airwall to version 4.1 or later to eliminate the flaw.
  • If an upgrade cannot be performed immediately, limit the file system paths that Airwall can access by configuring its runtime permissions or chrooting the process, ensuring sensitive files remain unreachable.
  • Apply network segmentation to restrict Airwall management traffic to trusted devices only, thereby reducing the surface for an attacker to provide malicious file paths.

Generated by OpenCVE AI on August 14, 2026 at 20:35 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 14 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 14 Aug 2026 19:45:00 +0000

Type Values Removed Values Added
Description External control of file name or path vulnerability in Johnson Controls Airwall allows : File Manipulation. This issue affects Airwall: before 4.1.
Title Airwall - Arbitrary file read
First Time appeared Johnson Controls
Johnson Controls airwall
Weaknesses CWE-73
CPEs cpe:2.3:a:johnson_controls:airwall:*:*:*:*:*:*:*:*
Vendors & Products Johnson Controls
Johnson Controls airwall
References
Metrics cvssV4_0

{'score': 7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N'}


Subscriptions

Johnson Controls Airwall
cve-icon MITRE

Status: PUBLISHED

Assigner: jci

Published:

Updated: 2026-08-14T19:49:52.871Z

Reserved: 2026-03-30T08:25:11.763Z

Link: CVE-2026-34492

cve-icon Vulnrichment

Updated: 2026-08-14T19:49:48.823Z

cve-icon NVD

Status : Received

Published: 2026-08-14T20:16:52.817

Modified: 2026-08-14T20:16:52.817

Link: CVE-2026-34492

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-14T20:45:03Z

Weaknesses
  • CWE-73

    External Control of File Name or Path