Critical severity10.0NVD Advisory· Published Nov 10, 2023· Updated Jun 17, 2026
CVE-2023-4804
CVE-2023-4804
Description
An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
130+ 1 more
- (no CPE)range: 0
- cpe:2.3:o:johnsoncontrols:quantum_hd_unity_evaporator_firmware:*:*:*:*:*:*:*:*range: >=11.00,<11.11
0+ 1 more
- (no CPE)range: 0
- cpe:2.3:o:johnsoncontrols:quantum_hd_unity_engine_room_firmware:*:*:*:*:*:*:*:*range: >=11.00,<11.11
cpe:2.3:o:johnsoncontrols:quantum_hd_unity_compressor_firmware:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:johnsoncontrols:quantum_hd_unity_compressor_firmware:*:*:*:*:*:*:*:*range: >=11.00,<11.22
- (no CPE)range: 0
cpe:2.3:o:johnsoncontrols:quantum_hd_unity_acuair_firmware:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:johnsoncontrols:quantum_hd_unity_acuair_firmware:*:*:*:*:*:*:*:*range: >=11.00,<11.12
- (no CPE)range: 0
cpe:2.3:o:johnsoncontrols:quantum_hd_unity_condenser\/vessel_firmware:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:johnsoncontrols:quantum_hd_unity_condenser\/vessel_firmware:*:*:*:*:*:*:*:*range: >=11.00,<11.11
- (no CPE)range: 0
cpe:2.3:o:johnsoncontrols:quantum_hd_unity_interface_firmware:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:johnsoncontrols:quantum_hd_unity_interface_firmware:*:*:*:*:*:*:*:*range: >=11.00,<11.11
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
2- www.cisa.gov/news-events/ics-advisories/icsa-23-313-01nvdThird Party AdvisoryUS Government Resource
- www.johnsoncontrols.com/cyber-solutions/security-advisoriesnvdVendor Advisory
News mentions
0No linked articles in our index yet.