VYPR
Medium severity5.5NVD Advisory· Published Jul 10, 2019· Updated Jun 17, 2026

CVE-2019-12804

CVE-2019-12804

Description

In Hunesion i-oneNet version 3.0.7 ~ 3.0.53 and 4.0.4 ~ 4.0.16, due to the lack of update file integrity checking in the upgrade process, an attacker can craft malicious file and use it as an update.

Affected products

3
  • Hunesion/i-oneNet3 versions
    cpe:2.3:a:hunesion:i-onenet:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:hunesion:i-onenet:*:*:*:*:*:*:*:*range: >=3.0.7,<=3.0.53
    • (no CPE)range: 3.0.7 - 3.0.53, 4.0.4 - 4.0.16
    • (no CPE)range: 3.0.7~3.0.53

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.