CVE-2017-16348: Insteon Hub Firmware

High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.

An exploitable denial of service vulnerability exists in Insteon Hub running firmware version 1012. Leftover demo functionality allows for arbitrarily rebooting the device without authentication. An attacker can send a UDP packet to trigger this vulnerability.

Affected products

  • Insteon Insteon Hub Firmware: version 1012 only

Published 2018-08-23. Last modified 2026-06-17.