← Back

Trane

trane

13 CVEs • 18 products

Products (18)

Click to collapse
Toggle
Tracer Sc
tracer_sc
Symbio 700
symbio_700
Symbio 800
symbio_800
Xl824 Firmware
xl824_firmware
Xl850 Firmware
xl850_firmware
Pivot Firmware
pivot_firmware
Intellipak 1
intellipak_1
Intellipak 2
intellipak_2
Xl824
xl824
Xl850
xl850
Xl1050
xl1050
Pivot
pivot

CVEs (13)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Trane
2Tracer Concierge
Tracer Sc Firmware
Jun 17, 2026
Mar 12, 2026
6.9 MEDIUM· v4
9.8 CRITICAL· v3
N/A· v2
A Use of Hard-coded, Security-relevant Constants vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an attacker to disclose sensitive information and take over accounts.
1Trane
2Tracer Concierge
Tracer Sc Firmware
Jun 17, 2026
Mar 12, 2026
8.2 HIGH· v4
9.8 CRITICAL· v3
N/A· v2
A Use of Hard-coded Credentials vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an attacker to disclose sensitive information and take over accounts.
1Trane
2Tracer Concierge
Tracer Sc Firmware
Jun 17, 2026
Mar 12, 2026
6.9 MEDIUM· v4
7.5 HIGH· v3
N/A· v2
A Missing Authorization vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an unauthenticated attacker to access sensitive information through unprotected APIs.
1Trane
2Tracer Concierge
Tracer Sc Firmware
Jun 17, 2026
Mar 12, 2026
8.7 HIGH· v4
7.5 HIGH· v3
N/A· v2
A Memory Allocation with Excessive Size Value vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an unauthenticated attacker to cause a denial-of-service condition
1Trane
2Tracer Concierge
Tracer Sc Firmware
Jun 17, 2026
Mar 12, 2026
9.2 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
A Use of a Broken or Risky Cryptographic Algorithm vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an attacker to bypass authentication and gain root-level access to the device.
1Trane
4Pivot Firmware
Xl1050 FirmwareXl824 Firmware+1 more
Jun 17, 2026
Aug 22, 2023
N/A· v4
6.8 MEDIUM· v3
N/A· v2
​A command injection vulnerability exists in Trane XL824, XL850, XL1050, and Pivot thermostats allowing an attacker to execute arbitrary commands as root using a specially crafted filename. The vulnerability requires ph...Show more
​A command injection vulnerability exists in Trane XL824, XL850, XL1050, and Pivot thermostats allowing an attacker to execute arbitrary commands as root using a specially crafted filename. The vulnerability requires physical access to the device via a USB stick. Show less
1Trane
2Symbio 700
Symbio 800
Jun 17, 2026
Nov 22, 2021
N/A· v4
7.6 HIGH· v3
4.6 MEDIUM· v2
The affected controllers do not properly sanitize the input containing code syntax. As a result, an attacker could craft code to alter the intended controller flow of the software.
1Trane
2Tracer Concierge
Tracer Sc Firmware
Jun 17, 2026
Oct 27, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
The affected controllers do not properly sanitize the input containing code syntax. As a result, an attacker could craft code to alter the intended controller flow of the software.
1Trane
1Tracer Sc Firmware
Jun 17, 2026
Oct 22, 2021
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
The affected product’s web application does not properly neutralize the input during webpage generation, which could allow an attacker to inject code in the input forms.
1Trane
1Comfortlink Ii Firmware
May 6, 2026
Jan 6, 2017
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
An exploitable remote code execution vulnerability exists in the Trane ComfortLink II firmware version 2.0.2 in DSS service. An attacker who can connect to the DSS service on the Trane ComfortLink II device can send an o...Show more
An exploitable remote code execution vulnerability exists in the Trane ComfortLink II firmware version 2.0.2 in DSS service. An attacker who can connect to the DSS service on the Trane ComfortLink II device can send an overly long REG request that can overflow a fixed size stack buffer, resulting in arbitrary code execution.Show less
1Trane
1Comfortlink Ii Firmware
May 6, 2026
Jan 6, 2017
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
A design flaw in the Trane ComfortLink II SCC firmware version 2.0.2 service allows remote attackers to take complete control of the system.
1Trane
1Tracer Sc
May 6, 2026
Sep 19, 2016
N/A· v4
7.5 HIGH· v3
6.9 MEDIUM· v2
ABB DataManagerPro 1.x before 1.7.1 allows local users to gain privileges by replacing a DLL file in the package directory.
1Trane
1Tracer Sc
May 6, 2026
Sep 19, 2016
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
The web server in Trane Tracer SC 4.2.1134 and earlier allows remote attackers to read sensitive configuration files via a direct request.