This issue affects EasyIO NEO: before 3.3b25.
Analysis and contextual insights are available on OpenCVE Cloud.
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 02 Oct 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 01 Oct 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cleartext Transmission of Sensitive Information in Johnson Controls EasyIO NEO Enabling Man‑in‑the‑Middle Attacks |
Thu, 01 Oct 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | - Cleartext Transmission of Sensitive Information vulnerability in Johnson Controls EasyIO NEO allows - Man In the Middle Attack. This issue affects EasyIO NEO: before 3.3b25. | |
| First Time appeared |
Johnson Controls
Johnson Controls easyio Neo |
|
| Weaknesses | CWE-319 | |
| CPEs | cpe:2.3:a:johnson_controls:easyio_neo:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Johnson Controls
Johnson Controls easyio Neo |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: jci
Published:
Updated: 2026-10-02T19:38:40.616Z
Reserved: 2026-07-20T19:51:19.089Z
Link: CVE-2026-64893
Updated: 2026-10-02T19:38:27.251Z
Status : Deferred
Published: 2026-10-01T22:17:04.540
Modified: 2026-10-02T20:17:03.827
Link: CVE-2026-64893
No data.
OpenCVE Enrichment
Updated: 2026-10-02T00:15:14Z
-
CWE-319
Cleartext Transmission of Sensitive Information