← Incidents
INCIDENT 181PhishingLOW / UNDER REVIEWSourced
Johnson Controls Simplex Incident Manager
<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-232-01.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>Successful exploitation of this vulnerability could allow a local attacker with low privileges to extract user credentials (passwords and authentication tokens) from system memory, potentially leading to unauthorized access to the application and connected systems.</strong></p> <p>The following versions of Johnson Controls Simplex Incident Manager are affected:</p> <ul> <li>Simplex Incident Manager <=V2.01 (CVE-2026-27875)</li> <…
Last evidence update
20 AUG 2026 · 12:00 UTC
Source count
1
Status
reported
ManufacturingEnergyGovernmentTransportationDefenseCVE-2026-27875
Preceded by
Weak signals the observatory recorded before this incident became visible.
Observation history
How this record has evolved as evidence accumulated.
21 AUG · 05:03 UTC
Initial report
Evidence