CVE-2026-34494

Published: Ott 02, 2026 Last Modified: Ott 02, 2026
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 7,2
Attack Vector: network
Attack Complexity: high
Privileges Required: none
User Interaction: active
Confidentiality: N/A
Integrity: N/A
Availability: N/A

Description

AI Translation Available

- On-Chip Debug Interface vulnerability in Johnson Controls Neo Series MVP2 allows Collect Data from Common Resource Locations.

This issue affects Neo Series MVP2: before 3.3b63.

1191

On-Chip Debug and Test Interface With Improper Access Control

Stable
Common Consequences
Security Scopes Affected:
Confidentiality Authorization Integrity Access Control
Potential Impacts:
Read Application Data Read Memory Execute Unauthorized Code Or Commands Modify Memory Modify Application Data Bypass Protection Mechanism
Applicable Platforms
All platforms may be affected
View CWE Details
https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories