CVE-2026-64896EPSS p8.3%

CVE-2026-64896CVE-2026-64896

Description

Debug and Test Interface With Improper Access Control vulnerability in Johnson Controls T2000 allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects T2000: before 31.6.

Scoring

EPSS0.19% probability of exploitation · percentile 8.3% · 2026-10-05T12:00:23Z
Last modified2026-09-03
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.