CVE-2019-12804: Hunesion I-Onenet

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

In Hunesion i-oneNet version 3.0.7 ~ 3.0.53 and 4.0.4 ~ 4.0.16, due to the lack of update file integrity checking in the upgrade process, an attacker can craft malicious file and use it as an update.

Affected products

  • Hunesion I-Onenet: from 3.0.7, up to and including 3.0.53; from 4.0.4, up to and including 4.0.16

Published 2019-07-10. Last modified 2026-06-17.