Threats Tagged 'cve-2023-4804'
View all threats tagged with 'cve-2023-4804'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2023-4804'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2023-4804 is a critical vulnerability in Johnson Controls Quantum HD Unity Compressor products where unauthorized users can access active debug features that were unintentionally exposed. This flaw allows remote attackers to gain full control over the affected devices without any authentication or user interaction. Exploitation can lead to complete compromise of confidentiality, integrity, and availability of the system. The vulnerability has a CVSS score of 10.0, indicating maximum severity. No known exploits are currently reported in the wild, but the risk remains high due to ease of exploitation and critical impact. European organizations using these HVAC control systems could face operational disruptions and data breaches. Immediate mitigation involves restricting network access to these devices, applying vendor patches once available, and monitoring for unusual activity. Countries with significant deployments of Johnson Controls products and critical infrastructure relying on HVAC systems are at higher risk. Given the critical nature and potential for widespread impact, this vulnerability demands urgent attention from defenders. Join the discussion | CVE Database V5 | 11/10/2023, 22:17:55 UTC Added: 12/16/2025, 17:18:55 UTC |
Showing 1 to 1 of 1 result