← Back to CVE List
CVE-2026-64893NVD
Vulnerability Summary
- Cleartext Transmission of Sensitive Information vulnerability in Johnson Controls EasyIO NEO allows - Man In the Middle Attack.
This issue affects EasyIO NEO: before 3.3b25.
This issue affects EasyIO NEO: before 3.3b25.
CVSS v4.0 Base Metrics — Score 7.3 (HIGH)
Attack VectorNetwork
Attack ComplexityHigh
Attack RequirementsPresent
Privileges RequiredLow
User InteractionPassive
Confidentiality (Vulnerable System)High
Integrity (Vulnerable System)Low
Availability (Vulnerable System)Low
Confidentiality (Subsequent System)High
Integrity (Subsequent System)High
Availability (Subsequent System)High
Affected & Patched Versions
- Johnson Controls EasyIO NEO < 3.3b25
- Johnson Controls EasyIO NEO 3.3b25