CVE-2023-4804
Quantum HD Unity
Severity Score
9.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Attend
*SSVC
Descriptions
An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.
Un usuario no autorizado podría acceder a las funciones de depuración de los productos Quantum HD Unity que quedaron expuestos accidentalmente.
An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.
*Credits:
Jim Reprogle
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Attend
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2023-09-06 CVE Reserved
- 2023-11-10 CVE Published
- 2024-12-17 EPSS Updated
- 2025-01-08 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-489: Active Debug Code
CAPEC
- CAPEC-212: Functionality Misuse
References (2)
URL | Tag | Source |
---|---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-23-313-01 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.johnsoncontrols.com/cyber-solutions/security-advisories | 2023-11-16 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Compressor Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Compressor Firmware" | >= 11.00 < 11.22 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Compressor Firmware" and version " >= 11.00 < 11.22" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Compressor Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Compressor" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Compressor Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Compressor Firmware" | >= 12.00 < 12.22 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Compressor Firmware" and version " >= 12.00 < 12.22" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Compressor Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Compressor" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Acuair Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Acuair Firmware" | >= 11.00 < 11.12 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Acuair Firmware" and version " >= 11.00 < 11.12" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Acuair Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Acuair" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Acuair Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Acuair Firmware" | >= 12.00 < 12.12 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Acuair Firmware" and version " >= 12.00 < 12.12" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Acuair Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Acuair" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Condenser\/vessel Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Condenser\/vessel Firmware" | >= 11.00 < 11.11 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Condenser\/vessel Firmware" and version " >= 11.00 < 11.11" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Condenser\/vessel Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Condenser\/vessel" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Condenser\/vessel Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Condenser\/vessel Firmware" | >= 12.00 < 12.11 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Condenser\/vessel Firmware" and version " >= 12.00 < 12.11" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Condenser\/vessel Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Condenser\/vessel" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Evaporator Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Evaporator Firmware" | >= 11.00 < 11.11 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Evaporator Firmware" and version " >= 11.00 < 11.11" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Evaporator Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Evaporator" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Evaporator Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Evaporator Firmware" | >= 12.00 < 12.11 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Evaporator Firmware" and version " >= 12.00 < 12.11" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Evaporator Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Evaporator" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Engine Room Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Engine Room Firmware" | >= 11.00 < 11.11 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Engine Room Firmware" and version " >= 11.00 < 11.11" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Engine Room Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Engine Room" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Engine Room Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Engine Room Firmware" | >= 12.00 < 12.11 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Engine Room Firmware" and version " >= 12.00 < 12.11" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Engine Room Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Engine Room" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Interface Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Interface Firmware" | >= 11.00 < 11.11 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Interface Firmware" and version " >= 11.00 < 11.11" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Interface Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Interface" | - | - |
Safe
|
Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Interface Firmware Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Interface Firmware" | >= 12.00 < 12.11 Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Interface Firmware" and version " >= 12.00 < 12.11" | - |
Affected
| in | Johnsoncontrols Search vendor "Johnsoncontrols" | Quantum Hd Unity Interface Search vendor "Johnsoncontrols" for product "Quantum Hd Unity Interface" | - | - |
Safe
|