CVE-2025-61736 - CVE House
Back to Database
Status published High CVE-2025-61736

iSTAR- Improper Validation of Certificate Expiration

Affected Vendor

Johnson Controls

View all reports →

Affected Software

iSTAReX, iSTAR Edge, iSTAR Ultra LT, iSTAR Ultra , iSTAR Ultra SE
Vulnerable Versions:
iSTAR All versions prior to TLS 1.2

Timeline

Official Publish: December 17th, 2025
Last Modified: December 17th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.