THREAT OPS › Threat News › Johnson Controls Inc. Airwall
Johnson Controls Inc. Airwall
<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-225-03.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>Successful exploitation of these vulnerabilities could allow an attacker to decrypt sensitive data, bypass authentication controls, gaining unauthorized access to read arbitrary files on the system, or gain unauthorized access to prot
MITRE ATT&CK techniques
Indicators of compromise
- CVE-2026-64887cve
- CVE-2026-34492cve
- https://www.cve.org/CVERecord?id=CVE-2026-64887url
- https://www.johnsoncontrols.com/trust-center/cybersecurity/resourcesurl
- https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisoriesurl
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:Nurl
- https://www.first.org/cvss/calculator/4.0#CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:Nurl
- https://www.cve.org/CVERecord?id=CVE-2026-34492url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:L/A:Lurl
- https://www.first.org/cvss/calculator/4.0#CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:A/VC:H/VI:L/VA:L/SC:N/SI:N/SA:Nurl
Original source: https://www.cisa.gov/news-events/ics-advisories/icsa-26-225-03
Same event, other sources
- Johnson Controls Inc. Airwallcisa_advisories · 2026-08-13