Successful exploitation of these vulnerabilities could allow an attacker to modify firmware and gain full access to the device.CreditsReid Wightman of Dragos reported these vulnerabilities to CISA.Referenceshttps://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisorieshttps://www.cisa.gov/news-events/ics-advisories/icsa-25-345-02