Threat+Constellation
Live UTC
← Incidents
INCIDENT 181PhishingLOW / UNDER REVIEWSourced

Johnson Controls Simplex Incident Manager

<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-232-01.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>Successful exploitation of this vulnerability could allow a local attacker with low privileges to extract user credentials (passwords and authentication tokens) from system memory, potentially leading to unauthorized access to the application and connected systems.</strong></p> <p>The following versions of Johnson Controls Simplex Incident Manager are affected:</p> <ul> <li>Simplex Incident Manager <=V2.01 (CVE-2026-27875)</li> <…

Last evidence update
20 AUG 2026 · 12:00 UTC
Source count
1
Status
reported
ManufacturingEnergyGovernmentTransportationDefenseCVE-2026-27875
Preceded by

Weak signals the observatory recorded before this incident became visible.

Observation history

How this record has evolved as evidence accumulated.

21 AUG · 05:03 UTC
Initial report
Evidence