8.8 High
CVSS4
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/SC:N/VI:H/SI:N/VA:H/SA:N
6.6 Medium
AI Score
Confidence
Low
0.0004 Low
EPSS
Percentile
9.2%
Under certain circumstances communications between the ICU tool and an
iSTAR Pro door controller is susceptible to Machine-in-the-Middle attacks
which could impact door control and configuration.
Author | Note |
---|---|
mdeslaur | This has nothing to do with the ICU package in Ubuntu. |
launchpad.net/bugs/cve/CVE-2024-32752
nvd.nist.gov/vuln/detail/CVE-2024-32752
security-tracker.debian.org/tracker/CVE-2024-32752
www.cisa.gov/news-events/ics-advisories/icsa-24-158-04
www.cve.org/CVERecord?id=CVE-2024-32752
www.johnsoncontrols.com/-/media/jci/cyber-solutions/product-security-advisories/2024/jci-psa-2024-06.pdf