In Hunesion i-oneNet version 3.0.7 ~ 3.0.53 and 4.0.4 ~ 4...
Moderate severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Mar 8, 2023
Description
Published by the National Vulnerability Database
Jul 10, 2019
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Mar 8, 2023
In Hunesion i-oneNet version 3.0.7 ~ 3.0.53 and 4.0.4 ~ 4.0.16, due to the lack of update file integrity checking in the upgrade process, an attacker can craft malicious file and use it as an update.
References