Vulnerabilities > Johnsoncontrols

DATE CVE VULNERABILITY TITLE RISK
2012-07-16 CVE-2012-2607 OS Command Injection vulnerability in Johnsoncontrols Network Controller and Network Controller Firmware
The Johnson Controls CK721-A controller with firmware before SSM4388_03.1.0.14_BB allows remote attackers to perform arbitrary actions via crafted packets to TCP port 41014 (aka the download port).
network
low complexity
johnsoncontrols CWE-78
7.5