CVE-2021-3789

MEDIUM

Motorola-branded Binatone Hubble Cameras - Info Disclosure

Title source: llm
STIX 2.1

Description

An information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with physical access to obtain the encryption key used to decrypt firmware update packages.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_misc
https://binatoneglobal.com/security-advisory/

Scores

CVSS v3 4.2
EPSS 0.0009
EPSS Percentile 0.5%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-522 CWE-326
Status published
Products (21)
binatoneglobal/cn28_firmware
binatoneglobal/cn40_firmware
binatoneglobal/cn50_firmware
binatoneglobal/cn75_firmware
binatoneglobal/comfort_40_firmware
binatoneglobal/comfort_50_connect_firmware
binatoneglobal/comfort_85_connect_firmware < 03.40.02
binatoneglobal/connect_20_firmware
binatoneglobal/connect_view_65_firmware
binatoneglobal/ease44_firmware
... and 11 more
Published Nov 12, 2021
Tracked Since Feb 18, 2026