High severity8.8NVD Advisory· Published May 26, 2020· Updated Jun 17, 2026
CVE-2020-9046
CVE-2020-9046
Description
A vulnerability in all versions of Kantech EntraPass Editions could potentially allow an authorized low-privileged user to gain full system-level privileges by replacing critical files with specifically crafted files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: all versions
- Johnson Controls/Kantech EntraPass Security Management Software Corporate Edition versions 8.22 and priorv5Range: unspecified
- Johnson Controls/Kantech EntraPass Security Management Software Global Edition versions 8.22 and priorv5Range: unspecified
- Johnson Controls/Kantech EntraPass Security Management Software Special Edition versions 8.22 and priorv5Range: unspecified
Patches
Vulnerability mechanics
References
2- www.johnsoncontrols.com/cyber-solutions/security-advisoriesnvdVendor Advisory
- www.us-cert.gov/ics/advisories/ICSA-20-147-02nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.