High severity7.5NVD Advisory· Published Feb 24, 2022· Updated Jun 17, 2026
CVE-2021-39364
CVE-2021-39364
Description
Honeywell HDZP252DI 1.00.HW02.4 and HBW2PER1 1.000.HW01.3 devices allow command spoofing (for camera control) after ARP cache poisoning has been achieved.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:o:honeywell:hbw2per1_firmware:1.000.hw01.3:*:*:*:*:*:*:*
- cpe:2.3:o:honeywell:hdzp252di_firmware:1.00.hw02.4:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- buildings.honeywell.com/content/dam/hbtbt/en/documents/downloads/Security_Notification_SN_2022-01-26-02_CVE-2021-39364_Video_Replay_HBW2PER1.pdfnvdVendor Advisory
- buildings.honeywell.com/us/en/brands/our-brands/security/support-and-resources/product-resources/eol-and-security-noticesnvdVendor Advisory
- www.honeywell.com/us/en/product-securitynvdVendor Advisory
News mentions
0No linked articles in our index yet.