Vulnerabilities > Honeywell > H4W8Pr2 Firmware

DATE CVE VULNERABILITY TITLE RISK
2019-10-31 CVE-2019-18228 Improper Input Validation vulnerability in Honeywell products
Honeywell equIP series IP cameras Multiple equIP Series Cameras, A vulnerability exists in the affected products where a specially crafted HTTP packet request could result in a denial of service.
network
low complexity
honeywell CWE-20
5.0
2019-10-31 CVE-2019-18226 Authentication Bypass by Capture-replay vulnerability in Honeywell products
Honeywell equIP series and Performance series IP cameras and recorders, A vulnerability exists in the affected products where IP cameras and recorders have a potential replay attack vulnerability as a weak authentication method is retained for compatibility with legacy products.
network
low complexity
honeywell CWE-294
7.5
2019-09-26 CVE-2019-13523 Missing Authentication for Critical Function vulnerability in Honeywell products
In Honeywell Performance IP Cameras and Performance NVRs, the integrated web server of the affected devices could allow remote attackers to obtain web configuration data in JSON format for IP cameras and NVRs (Network Video Recorders), which can be accessed without authentication over the network.
network
low complexity
honeywell CWE-306
5.0