A vulnerability, which was classified as critical, has been found in Honeywell IQ4x BMS Controller. The impacted element is an unknown function of the component Web-based HMI. Performing a manipulation results in missing authentication.

This vulnerability is cataloged as CVE-2026-3611. It is possible to initiate the attack remotely. There is no exploit available.