CVE Published: 20/08/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: jci |
Vendor: Johnson Controls |
Product: Metasys versions prior to 9.0 Status : PUBLISHED
CVE-2019-7594 Description
Metasys® ADS/ADX servers and NAE/NIE/NCE engines prior to 9.0 make use of a hardcoded RC2 key for certain encryption operations involving the Site Management Portal (SMP).