彙總 trane 相關全部產品的 CVE 與安全漏洞情報,包括 CVSS、EPSS、公開時間與漏洞情報資料。
常見弱點模式包括 跨站腳本、路徑處理缺陷與緩衝區溢位,在 生產負載與軟體部署 使用場景中可能帶來 記憶體損壞、檔案覆寫與工作階段劫持 等風險。
相關漏洞資料主要來源於公開漏洞披露與安全公告,可用於評估歷史漏洞暴露面與修補優先順序。
| CVE | 摘要 | 來源 | 最高 CVSS | EPSS % | 公開時間 | 更新時間 |
|---|---|---|---|---|---|---|
| CVE-2026-28256 | A Use of Hard-coded, Security-relevant Constants vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an attacker to disclose sensitive information and take over accounts. | [email protected] | 6.9 | 0.27% | 2026-03-12 | 2026-06-17 |
| CVE-2026-28255 | A Use of Hard-coded Credentials vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an attacker to disclose sensitive information and take over accounts. | [email protected] | 8.2 | 0.29% | 2026-03-12 | 2026-06-17 |
| CVE-2026-28254 | A Missing Authorization vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an unauthenticated attacker to access sensitive information through unprotected APIs. | [email protected] | 6.9 | 0.27% | 2026-03-12 | 2026-06-17 |
| CVE-2026-28253 | A Memory Allocation with Excessive Size Value vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an unauthenticated attacker to cause a denial-of-service condition | [email protected] | 8.7 | 0.31% | 2026-03-12 | 2026-06-17 |
| CVE-2026-28252 | A Use of a Broken or Risky Cryptographic Algorithm vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge could allow an attacker to bypass authentication and gain root-level access to the device. | [email protected] | 9.2 | 0.22% | 2026-03-12 | 2026-06-17 |
| CVE-2023-4212 | A command injection vulnerability exists in Trane XL824, XL850, XL1050, and Pivot thermostats allowing an attacker to execute arbitrary commands as root using a specially crafted filename. The vulnerability requires physical access to the device via a USB stick. | [email protected] | 6.8 | 1.16% | 2023-08-22 | 2026-06-17 |
| CVE-2021-38448 | The affected controllers do not properly sanitize the input containing code syntax. As a result, an attacker could craft code to alter the intended controller flow of the software. | [email protected] | 7.5 | 0.27% | 2021-11-22 | 2026-06-17 |
| CVE-2021-38450 | The affected controllers do not properly sanitize the input containing code syntax. As a result, an attacker could craft code to alter the intended controller flow of the software. | [email protected] | 9.9 | 0.98% | 2021-10-26 | 2026-06-17 |
| CVE-2021-42534 | The affected product’s web application does not properly neutralize the input during webpage generation, which could allow an attacker to inject code in the input forms. | [email protected] | 6.3 | 0.57% | 2021-10-22 | 2026-06-17 |
| CVE-2015-2868 | An exploitable remote code execution vulnerability exists in the Trane ComfortLink II firmware version 2.0.2 in DSS service. An attacker who can connect to the DSS service on the Trane ComfortLink II device can send an overly long REG request that can overflow a fixed size stack buffer, resulting in arbitrary code execution. | [email protected] | 9.8 | 6.79% | 2017-01-06 | 2026-06-16 |
| CVE-2015-2867 | A design flaw in the Trane ComfortLink II SCC firmware version 2.0.2 service allows remote attackers to take complete control of the system. | [email protected] | 9.8 | 4.87% | 2017-01-06 | 2026-06-16 |
| CVE-2016-4526 | ABB DataManagerPro 1.x before 1.7.1 allows local users to gain privileges by replacing a DLL file in the package directory. | [email protected] | 7.5 | 0.31% | 2016-09-18 | 2026-06-16 |
| CVE-2016-0870 | The web server in Trane Tracer SC 4.2.1134 and earlier allows remote attackers to read sensitive configuration files via a direct request. | [email protected] | 5.3 | 1.16% | 2016-09-18 | 2026-06-16 |