CVE Database
/

CVE-2024-32752

Back to search

CVE-2024-32752

Published: Jun 6, 2024

Modified: Apr 24, 2025

PUBLISHED

Description

The iSTAR door controllers running firmware prior to version 6.6.B, does not support authenticated communications with ICU, which may allow an attacker to gain unauthorized access

VendorProductVersions

Johnson Controls

iSTAR Configuration Utility (ICU)

affected
0 - <= All

Johnson Controls

iSTAR Pro, Edge and eX

affected
0 - <= All

Johnson Controls

iSTAR Ultra and Ultra LT

affected
0 - < 6.6.B

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now