Home
HIGH: 7.2 CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:L/SC:L/SI:L/SA:NDefault status
unaffected
IQPanel2 (custom)
affected
IQ Panels 2+ (custom)
affected
IQHub (custom)
affected
IQPanel 4 (custom)
affected
Description
Due to Nonce reuse, attackers can perform reply attack or decrypt captured packets.
Problem types
CWE-323 Reusing a Nonce, Key pair in encryption
Product status
IQPanel2 (custom)
IQ Panels 2+ (custom)
IQHub (custom)
IQPanel 4 (custom)
Credits
James Chambers of NCC Group
Sultan Qasim Khan of NCC Group
References
www.johnsoncontrols.com/...cybersecurity/security-advisories
www.cisa.gov/news-events/ics-advisories/icsa-25-350-02
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.