Update History: August 4, 2025 at 9:45AM EST – Published
Affected Products and Firmware Versions:
Vulnerability Description and Potential Impact:
If exploited, these critical vulnerabilities could allow an attacker to gain unauthorized access and control of a HALO device. This includes the ability to bypass web portal login protections through brute-force attacks and, more critically, to install unauthorized or malicious firmware. We are not aware of any exploitation in our customers’ environments, but immediate steps should be taken to safeguard devices.
Recommended Remediation – Immediate Action Required:
The most effective remediation is to ensure your HALO devices are running the latest firmware, which addresses these critical vulnerabilities. Firmware version 2.17.0.2 specifically addresses the vulnerabilities identified in this notice.
Additional Cybersecurity Best Practices:
We strongly remind all users of these general cybersecurity best practices:
Our Commitment to Security:
Motorola Solutions responsibly designs, hardens, and tests our solutions to incorporate key data security principles from the start, and we align with well-recognized information security standards. For example:
Questions or Assistance:
For questions or assistance with upgrading HALO firmware, please contact Motorola Solutions Technical Support at 866-797-1300.
Update History: January 18, 2024 at 9:45AM EST – Published
No Security Vulnerabilities
Update History: September 18, 2023 at 3:00PM EST – Published
No Security Vulnerabilities
Update History: December 14, 2021, at 4:30PM EST – Published
Overview
IPVideo Corporation is aware of the Log4j2 vulnerability CVE – CVE-2021-44228 (mitre.org) and our product, operations, and security teams are currently assessing all products.
As always, please follow cybersecurity best practices including ensuring all of your servers are properly secured behind firewalls, backed up, and not left unprotected on the internet if they are installed on-premises.
Please check back to this site regularly as we will continue to post updates as new information becomes available.
Current Status:
IPVideo Corporation has been performing a review of our products, code and production environments. Currently, our analysis indicates that the products listed below are not affected by this vulnerability. As this is an evolving threat, we will update this site as new information becomes available.
Important Notes:
https://aws.amazon.com/security/security-bulletins/AWS-2021-006/