CISA Issues Critical Security Advisory for Johnson Controls C-CURE 9000 and Victor Systems
23 lug 2026 · GOVERNMENT ADVISORY
CISA issued a high-severity advisory regarding critical vulnerabilities (including CVE-2026-21655 with CVSS score 9.6) in Johnson Controls C-CURE 9000 and victor application servers. Successful exploitation could allow unauthenticated remote code execution and compromise physical security controls in critical infrastructure.
PERCHÉ È RILEVANTE PER IL SETTORE
Official tier-1 government advisory from CISA warning of a critical CVSS 9.6 vulnerability affecting physical security and access control software widely deployed in critical manufacturing and facilities worldwide.