Vulnerability Description
Honeywell equIP and Performance series IP cameras, multiple versions, A vulnerability exists where the affected product allows unauthenticated access to audio streaming over HTTP.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Honeywell | H4D8Pr1 Firmware | < 1.000.hw01.3.20190820 |
| Honeywell | H4D8Pr1 | - |
| Honeywell | Hfd5Pr1 Firmware | < 1.000.hw01.1.20190822 |
| Honeywell | Hfd5Pr1 | - |
| Honeywell | Hpw2P1 Firmware | < 1.000.hw01.3.20190820 |
| Honeywell | Hpw2P1 | - |
| Honeywell | Hdzp304Di Firmware | < 1.000.hw10.5.20190812 |
| Honeywell | Hdzp304Di | - |
| Honeywell | Hdzp252Di Firmware | < 1.000.hw02.3.20181109 |
| Honeywell | Hdzp252Di | - |
| Honeywell | Hdz302Din-S1 Firmware | < 1.000.0041.20180530 |
| Honeywell | Hdz302Din-S1 | - |
| Honeywell | Hdz302Lik Firmware | < 1.000.61.1.20180607 |
| Honeywell | Hdz302Lik | - |
| Honeywell | Hdz302Liw Firmware | < 1.000.61.1.20180607 |
| Honeywell | Hdz302Liw | - |
| Honeywell | Hfd6Gr1 Firmware | < 1.000.hw00.9.20180510 |
| Honeywell | Hfd6Gr1 | - |
| Honeywell | Hfd8Gr1 Firmware | < 1.000.hw00.9.20180510 |
| Honeywell | Hfd8Gr1 | - |
Related Weaknesses (CWE)
References
- https://www.us-cert.gov/ics/advisories/icsa-19-304-03Third Party AdvisoryUS Government Resource
- https://www.us-cert.gov/ics/advisories/icsa-19-304-03Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2019-18230?
CVE-2019-18230 is a vulnerability with a CVSS score of 7.5 (HIGH). Honeywell equIP and Performance series IP cameras, multiple versions, A vulnerability exists where the affected product allows unauthenticated access to audio streaming over HTTP.
How severe is CVE-2019-18230?
CVE-2019-18230 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-18230?
Check the references section above for vendor advisories and patch information. Affected products include: Honeywell H4D8Pr1 Firmware, Honeywell H4D8Pr1, Honeywell Hfd5Pr1 Firmware, Honeywell Hfd5Pr1, Honeywell Hpw2P1 Firmware.