CVE-2026-21661EPSS p1.1%
CVE-2026-21661CVE-2026-21661
Description
An Uncontrolled Search Path Element vulnerability in JohnsonControls AC2000 on Windows allows Leveraging/Manipulating Configuration File Search Paths.
This issue affects AC2000: from 10.6 before release 10, from 11.0 before release 9, from 12 before release 3.
Scoring
| EPSS | 0.11% probability of exploitation · percentile 1.1% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-24 |