← Back to CVE List

CVE-2021-27657

Published: 2021-06-04T15:15Z
Last Modified: 2024-11-21T05:58Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Successful exploitation of this vulnerability could give an authenticated Metasys user an unintended level of access to the server file system, allowing them to access or modify system files by sending specifically crafted web messages to the Metasys system. This issue affects: Johnson Controls Metasys version 11.0 and prior versions. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt