VARIoT news about IoT security

Trust: 3.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Nov. 3, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: cisco firepower threat defense software
vendor: cisco model: firepower threat defense
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense software

Trust: 4.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 13, 2021, 8:34 a.m.
Vulnerabilities: timing attack
Affected productsExternal IDs
vendor: apple model: iphone

Trust: 3.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 14, 2021, 10:41 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-31251

Trust: 4.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Aug. 23, 2021, 6:56 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: realtek model: realtek sdk
vendor: mesh model: mesh
db: NVD ids: CVE-2021-35395
Related entries in the VARIoT vulnerabilities database: VAR-202104-0768

Trust: 4.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 11, 2022, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco hyperflex
vendor: cisco model: routers
vendor: cisco model: hyperflex
vendor: cisco model: soho
vendor: cisco model: router
vendor: d-link model: router
vendor: tenda model: ac11
vendor: tenda model: router
db: NVD ids: CVE-2021-20090

Trust: 4.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 2, 2021, 4:24 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-28139

Trust: 5.25

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 20, 2021, 12:04 p.m.
Vulnerabilities: default password, denial of service, code execution...
Affected productsExternal IDs
vendor: dahua model: camera
vendor: dahua model: ip camera
vendor: cisco model: routers
vendor: cisco model: router
vendor: cisco model: series
vendor: huawei model: huawei
vendor: huawei model: mate
vendor: axis model: axis
vendor: axis model: ip cameras
vendor: hikvision model: camera
vendor: hikvision model: hikvision
vendor: hikvision model: ip cameras
vendor: avigilon model: multiple
vendor: phillips model: hue
db: NVD ids: CVE-2021-36260

Trust: 3.25

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 11, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-42560

Trust: 4.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: April 16, 2021, 11:44 a.m.
Vulnerabilities: denial of service, code execution, authentication bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2021-28480, CVE-2021-28481, CVE-2021-42321

Trust: 4.25

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Oct. 16, 2021, midnight
Vulnerabilities: denial of service, code execution, information disclosure
Affected productsExternal IDs
vendor: samsung model: samsung
vendor: samsung model: mobile
vendor: samsung model: notes
vendor: nokia model: nokia
vendor: broadcom model: broadcom
vendor: huawei model: huawei
vendor: google model: android
vendor: google model: pixel
vendor: motorola model: android
vendor: motorola model: motorola
db: NVD ids: CVE-2021-30310, CVE-2021-0870, CVE-2021-1983, CVE-2021-30291, CVE-2021-0703, CVE-2021-30288, CVE-2021-30302, CVE-2021-30297, CVE-2020-29660, CVE-2021-1984, CVE-2021-1932, CVE-2021-0483, CVE-2021-30257, CVE-2021-27666, CVE-2021-1949, CVE-2021-30258, CVE-2021-1913, CVE-2020-26147, CVE-2021-1917, CVE-2021-1936, CVE-2021-29647, CVE-2021-1959, CVE-2021-1985, CVE-2020-11303, CVE-2021-30256, CVE-2020-10768, CVE-2021-30292, CVE-2020-26140

Trust: 3.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Oct. 29, 2021, 10 a.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 14, 2021, 6:54 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: watchos
vendor: apple model: macos
vendor: trend model: security

Trust: 3.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Aug. 18, 2021, 12:39 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: blackberry model: blackberry

Trust: 4.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Aug. 26, 2021, 4 p.m.
Vulnerabilities: cross-site request forgery, request forgery, code execution...
Affected productsExternal IDs
db: NVD ids: CVE-2021-32941
Related entries in the VARIoT vulnerabilities database: VAR-202109-1642

Trust: 4.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 8, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: huawei model: huawei
db: NVD ids: CVE-2021-37101

Trust: 4.25

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Aug. 23, 2021, 6 p.m.
Vulnerabilities: privilege elevation, code execution
Affected productsExternal IDs
vendor: sophos model: mobile
vendor: sophos model: endpoint protection
db: NVD ids: CVE-2021-34523, CVE-2021-31207, CVE-2021-34473
Related entries in the VARIoT vulnerabilities database: VAR-202110-1321

Trust: 4.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Oct. 20, 2021, 7:20 a.m.
Vulnerabilities: security bypass
Affected productsExternal IDs
db: NVD ids: CVE-2021-42299
Related entries in the VARIoT vulnerabilities database: VAR-202110-1321

Trust: 4.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 3, 2022, midnight
Vulnerabilities: security feature bypass, feature bypass
Affected productsExternal IDs
db: NVD ids: CVE-2021-42299

Trust: 6.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Oct. 1, 2021, 12:04 p.m.
Vulnerabilities: cross-site scripting, command injection
Affected productsExternal IDs
vendor: qnap model: photo station
db: NVD ids: CVE-2021-34356, CVE-2021-34352, CVE-2021-34354, CVE-2021-34355
Related entries in the VARIoT vulnerabilities database: VAR-202112-0004

Trust: 3.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 14, 2021, noon
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: watch
vendor: apple model: macos
vendor: apple model: iphone
vendor: apple model: ipad
db: NVD ids: CVE-2021-20860