CVE-2026-28254 | Trane Tracer SC/Tracer SC+/Tracer Concierge authorization (icsa-26-071-01)
A vulnerability, which was classified as problematic, has been found in Trane Tracer SC, Tracer SC+ and Tracer Concierge. Impacted is an unknown function. The manipulation leads to missing authorization.
This vulnerability is traded as CVE-2026-28254. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.