The vendor explicitly identifies these products as affected by this CVE.
- APOGEE PXC Series (BACnet)
- APOGEE PXC Series (P2 Ethernet)
- TALON TC Series (BACnet)
- Summary
- Affected devices connected to the network allow unrestricted access to sensitive files, such as databases. This could allow an attacker to download encrypted .db file containing passwords.
- Remediation
- Ensure all three default passwords are changed even if not in use.
