VARIoT news about IoT security

Trust: 4.0

Fetched: Sept. 29, 2023, 9:22 a.m., Published: Sept. 26, 2023, 7:58 a.m.
Vulnerabilities: weak password
Affected productsExternal IDs

Trust: 4.0

Fetched: Sept. 29, 2023, 9:21 a.m., Published: Sept. 28, 2023, 10:47 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco ios xe
vendor: cisco model: catalyst
vendor: cisco model: cisco ios
vendor: cisco model: ios xe
vendor: cisco model: series switches
vendor: cisco model: ios xe software
vendor: cisco model: series

Trust: 4.5

Fetched: Sept. 29, 2023, 9:21 a.m., Published: Sept. 25, 2023, midnight
Vulnerabilities: certificate validation issue, code execution, privilege escalation
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: ipad air
vendor: apple model: iphone
vendor: apple model: macos
vendor: apple model: ipad
db: NVD ids: CVE-2023-41993, CVE-2023-41992, CVE-2023-41991, CVE-2023-2023

Trust: 3.75

Fetched: Sept. 29, 2023, 9:19 a.m., Published: Sept. 27, 2023, 11:47 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software
vendor: cisco model: ios xe
vendor: cisco model: cisco ios xe

Trust: 5.0

Fetched: Sept. 29, 2023, 9:16 a.m., Published: Sept. 27, 2023, 11:47 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco wireless lan controller
vendor: cisco model: aireos
vendor: cisco model: wireless lan controller

Trust: 5.5

Fetched: Sept. 29, 2023, 9:15 a.m., Published: Sept. 8, 2023, midnight
Vulnerabilities: buffer overflow, code execution
Affected productsExternal IDs
vendor: apple model: ipad air
vendor: apple model: iphone
vendor: apple model: ipad
db: NVD ids: CVE-2023-41061, CVE-2023-41064

Trust: 5.5

Fetched: Sept. 29, 2023, 9:13 a.m., Published: Sept. 27, 2023, 12:37 p.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: apple model: macos
vendor: google model: chrome
vendor: google model: android
db: NVD ids: CVE-2023-41064, CVE-2023-4863

Trust: 4.75

Fetched: Sept. 29, 2023, 9:10 a.m., Published: Sept. 27, 2023, 9:47 a.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: nx-os software
vendor: cisco model: access points
vendor: cisco model: cisco ios xe
vendor: cisco model: catalyst
vendor: cisco model: cisco ios
vendor: cisco model: catalyst 9800
vendor: cisco model: cisco identity services engine
vendor: cisco model: ios xe
vendor: cisco model: identity services engine
vendor: cisco model: series switches
vendor: cisco model: router
vendor: cisco model: ios xr software
vendor: cisco model: ios xe software
vendor: cisco model: series
vendor: cisco model: wireless controller
vendor: cisco model: nx-os
vendor: cisco model: ios software
vendor: cisco model: ios xr

Trust: 4.75

Fetched: Sept. 29, 2023, 9:09 a.m., Published: Sept. 27, 2023, 11:47 a.m.
Vulnerabilities: access control vulnerability
Affected productsExternal IDs
vendor: cisco model: dna center

Trust: 5.5

Fetched: Sept. 27, 2023, 9:42 a.m., Published: Sept. 8, 2023, 2:24 p.m.
Vulnerabilities: code execution, buffer overflow
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: watchos
vendor: apple model: macos
vendor: apple model: ipad air
vendor: apple model: watch
vendor: apple model: iphone
db: NVD ids: CVE-2023-41064, CVE-2023-41061

Trust: 4.0

Fetched: Sept. 27, 2023, 9:41 a.m., Published: Sept. 6, 2023, 10:13 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-31168, CVE-2023-31166, CVE-2023-31175, CVE-2023-31148, CVE-2023-31171, CVE-2023-34392

Trust: 5.0

Fetched: Sept. 27, 2023, 9:39 a.m., Published: Sept. 22, 2023, 10:58 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: lexmark model: printer
db: NVD ids: CVE-2023-26068

Trust: 3.0

Fetched: Sept. 27, 2023, 9:37 a.m., Published: Sept. 26, 2023, 9:02 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: safari

Trust: 4.25

Fetched: Sept. 27, 2023, 9:37 a.m., Published: Sept. 22, 2023, midnight
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
vendor: google model: android
vendor: google model: chrome
db: NVD ids: CVE-2023-41991, CVE-2023-41993, CVE-2023-41992, CVE-2023-4762

Trust: 3.5

Fetched: Sept. 27, 2023, 9:36 a.m., Published: Sept. 8, 2023, 1 p.m.
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 3.0

Fetched: Sept. 27, 2023, 9:28 a.m., Published: Aug. 24, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 4.25

Fetched: Sept. 27, 2023, 9:25 a.m., Published: -
Vulnerabilities: configuration issue, detection bypass
Affected productsExternal IDs
vendor: cisco model: technical support
vendor: cisco model: guard
vendor: cisco model: wireless access point
vendor: cisco model: small business
vendor: cisco model: series
vendor: cisco model: ip phones
vendor: cisco model: meeting
vendor: google model: home
vendor: google model: wifi
vendor: check point model: check point
vendor: check point model: express
vendor: apple model: ipad
vendor: apple model: itunes
vendor: apple model: watch
vendor: symantec model: endpoint protection
vendor: symantec model: antivirus
vendor: novell model: client
vendor: novell model: opensuse
vendor: barracuda model: web filter
vendor: barracuda model: spam firewall
vendor: barracuda model: barracuda
vendor: barracuda model: running

Trust: 5.25

Fetched: Sept. 27, 2023, 9:23 a.m., Published: Sept. 22, 2023, 6:04 p.m.
Vulnerabilities: code execution, command insertion, command execution...
Affected productsExternal IDs
vendor: lexmark model: e
vendor: lexmark model: printer
db: NVD ids: CVE-2020-13927, CVE-2023-26068, CVE-2020-11978

Trust: 5.5

Fetched: Sept. 27, 2023, 9:22 a.m., Published: Sept. 20, 2023, 5:28 a.m.
Vulnerabilities: code execution, command injection, security feature bypass...
Affected productsExternal IDs
vendor: trend model: worry-free business security
vendor: trend model: antivirus
vendor: trend model: security
vendor: trend model: worry-free business security services
vendor: minio model: minio
vendor: samsung model: mobile
vendor: samsung model: samsung mobile
vendor: samsung model: mobile devices
vendor: trend micro model: worry-free business security
vendor: trend micro model: antivirus
vendor: trend micro model: security
vendor: trend micro model: worry-free business security services
vendor: realtek model: realtek sdk
vendor: zyxel model: emg2926
db: NVD ids: CVE-2022-31459, CVE-2021-3129, CVE-2022-22265, CVE-2017-6884, CVE-2022-31461, CVE-2014-8361, CVE-2023-41179, CVE-2022-31460, CVE-2023-28434, CVE-2022-31463, CVE-2023-28432, CVE-2022-31462

Trust: 3.5

Fetched: Sept. 26, 2023, 9:39 a.m., Published: Sept. 3, 2023, 4:42 a.m.
Vulnerabilities: authentication bypass, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-20890, CVE-2023-34039, CVE-2023-20900