CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

johnsoncontrols

c-cure_9000_firmware

3 known vulnerabilities · sorted by CVSS score

CVE-2020-9045
CRITICAL9.9

During installation or upgrade to Software House C•CURE 9000 v2.70 and American Dynamics victor Video Management System v5.2, the credentials of the user used to perform the installation or upgrade are logged in a file. The install log file persists after the installation.

tyco / victor_video_management_system+1
Network
Published May 21, 2020
CVE-2021-27660
HIGH8.8

An insecure client auto update feature in C-CURE 9000 can allow remote execution of lower privileged Windows programs.

johnsoncontrols / c-cure_9000_firmware
Network
Published Jul 1, 2021
CVE-2021-36201
MEDIUM4.3

Under certain circumstances a CCURE Portal user could enumerate user accounts in CCURE 9000 version 2.90 and prior versions.

johnsoncontrols / c-cure_9000_firmware
Adjacent
Published Oct 11, 2022