THREAT INTELLIGENCE CYBERTTAKv3.0.3.0
LIVE FEED ACTIVE
← Back to Intel Feed
Secure route: /intel/ai-critical-vulnerabilities-in-johnson-controls-c-cure-9000-and-victor-application-servers-37c0fc00
criticalCVE-2026-216552026-07-23Vector: appsec

Critical Vulnerabilities in Johnson Controls C-CURE 9000 and victor Application Servers

Johnson Controls has released security updates for its C-CURE 9000 and victor application servers, which are used to manage physical security systems. These vulnerabilities could allow unauthorized users to take control of these systems or access sensitive data. Organizations using these products should update to the latest versions immediately.

Decision Context

English Brief

Johnson Controls has released security updates for its C-CURE 9000 and victor application servers, which are used to manage physical security systems. These vulnerabilities could allow unauthorized users to take control of these systems or access sensitive data. Organizations using these products should update to the latest versions immediately.

الموجز العربي

ثغرات أمنية حرجة في خوادم تطبيقات Johnson Controls C-CURE 9000 و victor

أصدرت شركة Johnson Controls تحديثات أمنية لخوادم تطبيقات C-CURE 9000 و victor المستخدمة في إدارة أنظمة الأمن المادي. قد تسمح هذه الثغرات لمستخدمين غير مصرح لهم بالتحكم في هذه الأنظمة أو الوصول إلى بيانات حساسة. يجب على المؤسسات التي تستخدم هذه المنتجات التحديث إلى أحدث الإصدارات فوراً.

Affected Products
    Priority sectors
    Critical InfrastructureManufacturing
    Immediate Actions
    1. 1Upgrade C-CURE 9000/victor to v3.20 or later.
    2. 2Upgrade victor Web to v7.0 or later.
    3. 3Restrict network access to port 8999 to trusted management subnets only.