CVE-2026-27873

LOWCVSS 5.6 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

- Use of Hard-coded Credentials vulnerability in Johnson Controls EasyIO FG allows - Pasword Spraying. This issue affects EasyIO FG: before 2.0b52.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-798

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-10-07: 110-07
Full discourse1 post
  • Kubbe Siber Güvenlik@KubbeSiber

    ❗ Johnson Controls EasyIO FG için ciddi güvenlik açığı CISA, EasyIO FG firmware 2.0b52 ve öncesini etkileyen iki açığı duyurdu. CVE-2026-27872 ve CVE-2026-27873, başarılı istismar halinde cihaz üzerinde tam yetkisiz erişime yol açabiliyor. https://t.co/8u7PGuHwFq

    0000030
    7 followersView on X

Explore more