VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202310-0203

Trust: 5.5

Fetched: Oct. 18, 2023, 9:31 a.m., Published: Jan. 10, 2023, midnight
Vulnerabilities: path traversal
Affected productsExternal IDs
vendor: siemens model: sicam
vendor: siemens model: sicam a8000
db: NVD ids: CVE-2023-42796

Trust: 4.25

Fetched: Oct. 18, 2023, 9:29 a.m., Published: Oct. 2, 2023, 12:22 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: google model: home
vendor: palo model: networks
vendor: palo alto networks model: networks

Trust: 5.25

Fetched: Oct. 18, 2023, 9:24 a.m., Published: Oct. 18, 2023, midnight
Vulnerabilities: configuration issue
Affected productsExternal IDs
vendor: bosch model: smart camera
vendor: trend model: security
vendor: trend micro model: security
db: NVD ids: CVE-2022-27593

Trust: 3.75

Fetched: Oct. 18, 2023, 9:23 a.m., Published: Oct. 17, 2023, 12:30 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: router
vendor: cisco model: cisco ios
db: NVD ids: CVE-2023-20198

Trust: 3.25

Fetched: Oct. 18, 2023, 9:23 a.m., Published: Oct. 18, 2023, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 4.75

Fetched: Oct. 18, 2023, 9:22 a.m., Published: Oct. 10, 2023, 10:39 a.m.
Vulnerabilities: weak password
Affected productsExternal IDs
vendor: chirpstack model: network server

Trust: 4.25

Fetched: Oct. 18, 2023, 9:21 a.m., Published: Oct. 17, 2023, 9:11 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 4.25

Fetched: Oct. 18, 2023, 9:20 a.m., Published: Oct. 3, 2023, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: google model: home
vendor: palo model: networks
vendor: palo alto networks model: networks

Trust: 3.5

Fetched: Oct. 18, 2023, 9:19 a.m., Published: Oct. 13, 2023, 3:30 a.m.
Vulnerabilities: buffer overflow, use after free
Affected productsExternal IDs
vendor: google model: android
vendor: google model: google chrome
vendor: google model: chrome

Trust: 4.25

Fetched: Oct. 18, 2023, 9:19 a.m., Published: Oct. 17, 2023, midnight
Vulnerabilities: privilege escalation, default credentials
Affected productsExternal IDs
vendor: cisco model: access points
vendor: cisco model: routers
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
db: NVD ids: CVE-2023-20198

Trust: 3.75

Fetched: Oct. 18, 2023, 9:18 a.m., Published: Oct. 17, 2023, 12:15 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
db: NVD ids: CVE-2023-20198

Trust: 3.75

Fetched: Oct. 18, 2023, 9:16 a.m., Published: Oct. 17, 2023, 10:36 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: snort model: snort
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: router
db: NVD ids: CVE-2023-20198

Trust: 4.0

Fetched: Oct. 18, 2023, 9:16 a.m., Published: Oct. 17, 2023, 10:15 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: wireless lan controller
vendor: cisco model: cisco ios xe
vendor: cisco model: router
vendor: cisco model: cisco ios
db: NVD ids: CVE-2023-20198
Related entries in the VARIoT vulnerabilities database: VAR-202103-0773

Trust: 4.25

Fetched: Oct. 18, 2023, 9:16 a.m., Published: Oct. 17, 2023, 9:42 p.m.
Vulnerabilities: arbitrary command execution, command execution
Affected productsExternal IDs
vendor: cisco model: routers
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: router
vendor: cisco model: cisco ios
vendor: trend model: security
vendor: trend micro model: security
db: NVD ids: CVE-2023-20198, CVE-2021-1435

Trust: 4.0

Fetched: Oct. 18, 2023, 9:16 a.m., Published: Oct. 17, 2023, 9 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: routers
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software
db: NVD ids: CVE-2023-20198

Trust: 3.75

Fetched: Oct. 18, 2023, 9:15 a.m., Published: Oct. 17, 2023, 9:51 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: router
vendor: cisco model: wireless controller
vendor: cisco model: cisco ios
db: NVD ids: CVE-2023-20198

Trust: 4.0

Fetched: Oct. 18, 2023, 9:15 a.m., Published: Oct. 17, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: routers
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
db: NVD ids: CVE-2023-20198
Related entries in the VARIoT vulnerabilities database: VAR-202103-0773

Trust: 5.5

Fetched: Oct. 18, 2023, 9:15 a.m., Published: Oct. 17, 2023, midnight
Vulnerabilities: command injection, privilege escalation
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: ios software
vendor: cisco model: ios xe software
db: NVD ids: CVE-2023-20198, CVE-2021-1435
Related entries in the VARIoT vulnerabilities database: VAR-202103-0773

Trust: 4.25

Fetched: Oct. 18, 2023, 9:11 a.m., Published: Oct. 16, 2023, 5:14 p.m.
Vulnerabilities: command injection, privilege escalation
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: router
vendor: cisco model: cisco ios
db: NVD ids: CVE-2023-20109, CVE-2023-20198, CVE-2021-1435

Trust: 4.5

Fetched: Oct. 18, 2023, 9:11 a.m., Published: Oct. 9, 2023, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: mikrotik model: winbox
vendor: mikrotik model: routers
vendor: mikrotik model: mikrotik routers
vendor: mikrotik model: router
vendor: mikrotik model: routeros
db: NVD ids: CVE-2023-30799