← Vulnerability feed

Vulnerability record · CVE-2021-3787 · published 12 November 2021

CVE-2021-3787: Binatoneglobal halo\+ camera firmware vulnerability

Binatoneglobal · Halo\+ Camera Firmware

A vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with local access to obtain the MQTT credentials that could result in unauthorized access to backend Hubble services.

7.8 CVSS 3.1 High EPSS 0.17% · top 93.8% CWE-256 · CWE-256
7.8CVSS 3.1 base score, v2 4.6
0.17%EPSS exploitation probability, 30 days
NoNot in CISA KEV
21Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

A vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with local access to obtain the MQTT credentials that could result in unauthorized access to backend Hubble services.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

21 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2021-3787 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2021-3577Motorola Binatone Hubble cameras command injection allows unauthenticated RCESeveral Motorola-branded Binatone Hubble camera firmware images contain an OS command injection flaw (CWE-78) combined with incorrect authorization (…EPSS 60%analysed6.8CVE-2021-3788Binatoneglobal halo\+ camera firmware improper authentication vulnerabilityAn exposed debug interface was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with physical access unauthoriz…EPSS 0.24%6.5CVE-2021-3790Binatoneglobal halo\+ camera firmware stack-based buffer overflow vulnerabilityA buffer overflow was reported in the local web server of some Motorola-branded Binatone Hubble Cameras that could allow an unauthenticated attacker …EPSS 0.40%6.5CVE-2021-3791Binatoneglobal halo\+ camera firmware sensitive information in log file vulnerabilityAn information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an unauthenticated attacker on…EPSS 0.42%5.3CVE-2021-3792Binatoneglobal halo\+ camera firmware cleartext transmission vulnerabilitySome device communications in some Motorola-branded Binatone Hubble Cameras with backend Hubble services are not encrypted which could lead to the co…EPSS 0.49%5.3CVE-2021-3793Binatoneglobal halo\+ camera firmware vulnerabilityAn improper access control vulnerability was reported in some Motorola-branded Binatone Hubble Cameras which could allow an unauthenticated attacker …EPSS 0.70%4.6CVE-2021-3789Binatoneglobal halo\+ camera firmware insufficiently protected credentials vulnerabilityAn information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with physical acce…EPSS 0.09%

Source: NIST National Vulnerability Database (record CVE-2021-3787), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.