CVE-2025-61736 Details
Description
Successful exploitation of this vulnerability could result in the product failing to re-establish communication once the certificate expires.
A vulnerability exists in Johnson Controls iSTAR eX, iSTAR Edge, iSTAR Ultra LT, iSTAR Ultra, and iSTAR Ultra SE products, all versions prior to TLS 1.2. The issue arises from improper validation of certificate expiration, which can lead to communication failures with the C•CURE Server once the certificate expires.
Johnson Controls recommends using host-based certificates with TLS 1.2, which requires downloading a new certificate to all iSTAR panels simultaneously. For iSTAR Ultra and Ultra SE panels, an upgrade to the new G2 hardware is recommended. Users can consult Johnson Controls' technical support and documentation for guidance on implementing these solutions.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Dec 17, 2025CISA-ADP
Assessed Dec 17, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.cisa.gov/news-events/ics-advisories/icsa-25-338-04 | [email protected] | AdvisoryRemedyVendor |
| https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories | [email protected] | AdvisoryVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-298 | Improper Validation of Certificate Expiration | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Johnson Controls iSTAR eX | All versions |
CPE
Remediation
| |
| Johnson Controls iSTAR Edge | All versions |
CPE
Remediation
| |
| Johnson Controls iSTAR Ultra LT | All versions |
CPE
Remediation
| |
| Johnson Controls iSTAR Ultra | All versions |
CPE
Remediation
| |
| Johnson Controls iSTAR Ultra SE | All versions |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Dec 17, 2025 | New CVE Received | [email protected] |
Volerion