All 7 CVE vulnerabilities found in Tracer SC, with AI-generated Chinese analysis, references, and POCs.
Vendor: Trane
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-28256 | Use of Hard-coded Credentials vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge CWE-547 | 9.8AI | CriticalAI | 2026-03-12 |
| CVE-2026-28255 | Use of Hard-coded Credentials vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge CWE-798 | 9.8AI | CriticalAI | 2026-03-12 |
| CVE-2026-28254 | Missing Authorization vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge CWE-862 | 7.5AI | HighAI | 2026-03-12 |
| CVE-2026-28253 | Memory Allocation with Excessive Size Value vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge CWE-789 | 7.5AI | HighAI | 2026-03-12 |
| CVE-2026-28252 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge CWE-327 | 9.8AI | CriticalAI | 2026-03-12 |
| CVE-2021-38450 | Trane Tracer Code Injection CWE-94 | 9.9 | Critical | 2021-10-27 |
| CVE-2021-42534 | Trane Building Automation Controllers Cross-site Scripting CWE-79 | 6.3 | Medium | 2021-10-22 |
All 7 known CVE vulnerabilities affecting Tracer SC with full Chinese analysis, references, and POCs where available.