VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202303-1268

Trust: 3.75

Fetched: May 2, 2023, 9:18 a.m., Published: April 25, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: tp-link model: routers
db: NVD ids: CVE-2023-1389
Related entries in the VARIoT vulnerabilities database: VAR-201707-0964

Trust: 3.75

Fetched: May 2, 2023, 9:17 a.m., Published: April 19, 2023, 9:03 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: cisco routers
vendor: cisco model: router
vendor: cisco model: routers
vendor: cisco model: ios xe software
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
db: NVD ids: CVE-2017-6742

Trust: 4.0

Fetched: May 2, 2023, 9:15 a.m., Published: April 28, 2023, 7:21 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-1966, CVE-2023-1968

Trust: 3.0

Fetched: May 2, 2023, 9:14 a.m., Published: April 28, 2023, 11:33 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-1966, CVE-2023-1968

Trust: 5.75

Fetched: May 2, 2023, 9:13 a.m., Published: April 7, 2023, 10:50 a.m.
Vulnerabilities: code execution, cross-site scripting, command injection
Affected productsExternal IDs
vendor: sophos model: firewall
vendor: sophos model: web appliance
vendor: sophos model: sophos web appliance
db: NVD ids: CVE-2022-4934, CVE-2020-36692, CVE-2023-1671

Trust: 5.5

Fetched: April 30, 2023, 9:11 a.m., Published: April 21, 2023, 5:41 a.m.
Vulnerabilities: authentication bypass, code execution, command injection
Affected productsExternal IDs
vendor: cisco model: cisco industrial network director
vendor: cisco model: industrial network director
db: NVD ids: CVE-2023-20036, CVE-2023-20865, CVE-2023-20039, CVE-2023-20154, CVE-2022-31704, CVE-2023-20864, CVE-2022-31706
Related entries in the VARIoT vulnerabilities database: VAR-202304-0672

Trust: 4.25

Fetched: April 30, 2023, 9:07 a.m., Published: Jan. 10, 2023, midnight
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
vendor: siemens model: sicam
vendor: siemens model: sicam a8000
db: NVD ids: CVE-2023-28489

Trust: 5.5

Fetched: April 30, 2023, 9:07 a.m., Published: April 21, 2023, 2:04 p.m.
Vulnerabilities: directory traversal, code execution, command injection...
Affected productsExternal IDs
vendor: trend model: security
vendor: trend micro model: security
db: NVD ids: CVE-2023-20865, CVE-2023-20864, CVE-2022-31710, CVE-2022-31706

Trust: 3.0

Fetched: April 30, 2023, 9:07 a.m., Published: April 28, 2023, 11:46 a.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2023-20870, CVE-2023-20871, CVE-2023-20869, CVE-2023-20872
Related entries in the VARIoT vulnerabilities database: VAR-202304-2162, VAR-202304-2073, VAR-202304-1973

Trust: 5.75

Fetched: April 30, 2023, 9:06 a.m., Published: April 28, 2023, 11:41 a.m.
Vulnerabilities: code execution, command injection, buffer overflow
Affected productsExternal IDs
vendor: zyxel model: zywall
db: NVD ids: CVE-2022-43389, CVE-2023-27991, CVE-2023-28771, CVE-2023-22913, CVE-2023-22918
Related entries in the VARIoT vulnerabilities database: VAR-201707-0964

Trust: 4.75

Fetched: April 30, 2023, 9:06 a.m., Published: April 28, 2023, 4:36 p.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: cisco systems model: router
vendor: cisco systems model: cisco ios
vendor: cisco systems model: routers
vendor: cisco systems model: cisco routers
vendor: trend model: security
vendor: trend micro model: security
vendor: cisco model: router
vendor: cisco model: cisco ios
vendor: cisco model: routers
vendor: cisco model: cisco routers
db: NVD ids: CVE-2017-6742

Trust: 4.0

Fetched: April 28, 2023, 9:27 a.m., Published: April 18, 2023, 2:45 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
db: NVD ids: CVE-2023-28205, CVE-2023-28206

Trust: 3.75

Fetched: April 28, 2023, 9:26 a.m., Published: April 25, 2023, midnight
Vulnerabilities: buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2023-29552, CVE-2021-21974

Trust: 3.75

Fetched: April 28, 2023, 9:24 a.m., Published: April 25, 2023, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2023-29552

Trust: 3.0

Fetched: April 28, 2023, 9:23 a.m., Published: April 12, 2023, 7:27 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-23397

Trust: 3.75

Fetched: April 28, 2023, 9:22 a.m., Published: April 11, 2023, 9:44 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-32537

Trust: 4.75

Fetched: April 28, 2023, 9:22 a.m., Published: April 11, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: trend micro model: security
vendor: samsung model: mobile
vendor: trend model: security
vendor: apple model: webkit
vendor: apple model: ipad air
vendor: apple model: macos
vendor: apple model: iphone
vendor: apple model: safari
vendor: apple model: ipad
db: NVD ids: CVE-2023-28205, CVE-2022-37969, CVE-2023-28206, CVE-2023-28252

Trust: 3.25

Fetched: April 28, 2023, 9:21 a.m., Published: April 15, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canary model: canary
Related entries in the VARIoT vulnerabilities database: VAR-202108-2051, VAR-202212-1751

Trust: 5.25

Fetched: April 28, 2023, 9:20 a.m., Published: March 31, 2023, midnight
Vulnerabilities: information leak, code execution, privilege escalation
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: safari
vendor: google model: android
vendor: google model: chrome
vendor: samsung model: mobile
vendor: avast model: antivirus
db: NVD ids: CVE-2022-3038, CVE-2021-30900, CVE-2022-38181, CVE-2022-3723, CVE-2022-4262, CVE-2023-0266, CVE-2022-22706, CVE-2022-4135, CVE-2022-42856

Trust: 3.75

Fetched: April 28, 2023, 9:20 a.m., Published: April 21, 2023, 3:16 p.m.
Vulnerabilities: command injection, os command injection, code execution
Affected productsExternal IDs