Check Point Advisories

Binatone Hubble Cameras Command Injection (CVE-2021-3577)

Check Point Reference: CPAI-2021-1745
Date Published: 17 May 2023
Severity: High
Last Updated: Wednesday 17 May, 2023
Source:
Industry Reference:CVE-2021-3577
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Binatone Hubble Halo+ up to 03.50.14
Binatone Hubble Comfort 85 connect up to 03.40.02
Binatone Hubble MBP3855 up to 03.40.00
Binatone Hubble Focus 68 V100
Binatone Hubble Focus 68 V200
Binatone Hubble Focus 72R V100 up to 03.40.00
Binatone Hubble Focus 72R V200 up to 03.40.00
Binatone Hubble CN28
Binatone Hubble CN50
Binatone Hubble COMFORT 40
Binatone Hubble COMFORT 50 Connect
Binatone Hubble MBP4855
Binatone Hubble MBP3667
Binatone Hubble MBP669 Connect
Binatone Hubble LUX64
Binatone Hubble LUX65
Binatone Hubble Connect View 65
Binatone Hubble LUX85 Connect
Binatone Hubble EASE44
Binatone Hubble Connect 20
Binatone Hubble MBP6855
Binatone Hubble CN40
Binatone Hubble CN75
Vulnerability Description A command injection vulnerability exists in multiple Binatone Hubble cameras. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary commands on the affected system.

Protection Overview

This protection detects attempts to exploit this vulnerability.

In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, click on Protection tab and select the version of your choice.

Security Gateway R81 / R80 / R77 / R75

  1. In the IPS tab, click Protections and find the Binatone Hubble Cameras Command Injection (CVE-2021-3577) protection using the Search tool and Edit the protection's settings.
  2. Install policy on all Security Gateways.

This protection's log will contain the following information:

Attack Name:  Application Servers Protection Violation.
Attack Information:  Binatone Hubble Cameras Command Injection (CVE-2021-3577)

×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK