Use of Hard-coded Credentials Vulnerability in Johnson Controls EasyIO FS32
CVE-2026-27874
5.9MEDIUM
What is CVE-2026-27874?
The EasyIO FS32 by Johnson Controls is vulnerable due to the use of hard-coded credentials, allowing potential exploitation through default or predetermined login details. This issue impacts versions prior to 3.0b63, posing significant security risks for devices that have not been updated. Users are advised to review their device configurations and implement necessary updates to mitigate the threat.
Affected Version(s)
EasyIO FS32 0 < 3.0b63
