Johnson Controls iSTAR OS Command Injection Vulnerabilities (CVE-2025-43875/43876)
Security Advisory
CVE-2025-43875
High
Johnson Controls
Affected:
- Johnson Controls iSTAR Ultra < 6.9.7.CU01
- Johnson Controls iSTAR Ultra SE < 6.9.7.CU01
- Johnson Controls iSTAR Ultra G2 < 6.9.3
- Johnson Controls iSTAR Ultra G2 SE < 6.9.3
- Johnson Controls iSTAR Edge G2 < 6.9.3
Fixed in:
- 6.9.7.CU01
- 6.9.3
Referenced CVEs:
CVE-2025-43876
CVE-2025-43875
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from www.cisa.gov, cleaned by our LLM pipeline, and translated to English. View original.