VARIoT news about IoT security

Trust: 3.0

Fetched: Sept. 22, 2023, 9:15 a.m., Published: Sept. 20, 2023, 8:52 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-36845
Related entries in the VARIoT vulnerabilities database: VAR-201704-1556, VAR-202201-1001, VAR-201505-0274

Trust: 4.0

Fetched: Sept. 22, 2023, 9:15 a.m., Published: Sept. 19, 2023, 10 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2017-6884, CVE-2022-22265, CVE-2014-8361, CVE-2021-3129

Trust: 4.0

Fetched: Sept. 22, 2023, 9:13 a.m., Published: Sept. 21, 2023, 8:11 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: webkit
vendor: apple model: safari
vendor: apple model: iphone
vendor: apple model: watch
vendor: apple model: watchos
vendor: apple model: macos
db: NVD ids: CVE-2023-41992, CVE-2023-41991, CVE-2023-41933

Trust: 3.5

Fetched: Sept. 22, 2023, 9:12 a.m., Published: Sept. 7, 2023, 5:40 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: safari
vendor: apple model: icloud
vendor: apple model: iphone
vendor: apple model: watch
vendor: essential model: phone

Trust: 3.25

Fetched: Sept. 20, 2023, 10:04 a.m., Published: Oct. 2, 2017, 8:33 a.m.
Vulnerabilities: sql injection, information leakage, privilege escalation...
Affected productsExternal IDs
vendor: node.js model: node.js
vendor: google model: chrome

Trust: 5.0

Fetched: Sept. 20, 2023, 10 a.m., Published: Sept. 8, 2023, 10:15 a.m.
Vulnerabilities: command execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-20238

Trust: 3.0

Fetched: Sept. 20, 2023, 10 a.m., Published: Aug. 28, 2023, 10:20 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: mobile

Trust: 3.75

Fetched: Sept. 20, 2023, 10 a.m., Published: April 6, 2023, 11:25 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-0669

Trust: 3.0

Fetched: Sept. 20, 2023, 9:58 a.m., Published: Sept. 7, 2023, 5 a.m.
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-201906-0815, VAR-202205-0394, VAR-202206-0004, VAR-202205-1958, VAR-202112-0566

Trust: 4.5

Fetched: Sept. 20, 2023, 9:57 a.m., Published: Aug. 24, 2023, 7:07 p.m.
Vulnerabilities: security feature bypass, authentication bypass, authentication vulnerability...
Affected productsExternal IDs
vendor: zoho model: manageengine adselfservice plus
db: NVD ids: CVE-2021-40539, CVE-2018-13379, CVE-2022-22954, CVE-2021-34523, CVE-2022-1388, CVE-2022-26134, CVE-2021-26084, CVE-2021-34473, CVE-2022-22960, CVE-2022-30190, CVE-2021-44228, CVE-2021-31207

Trust: 3.5

Fetched: Sept. 20, 2023, 9:56 a.m., Published: Sept. 2, 2023, 12:55 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home

Trust: 5.25

Fetched: Sept. 20, 2023, 9:55 a.m., Published: Sept. 19, 2023, 9:30 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-36846, CVE-2023-36845, CVE-2023-36847, CVE-2023-36844

Trust: 3.0

Fetched: Sept. 20, 2023, 9:55 a.m., Published: Sept. 20, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: mesh model: mesh

Trust: 4.25

Fetched: Sept. 20, 2023, 9:53 a.m., Published: Sept. 18, 2023, 1:28 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
db: NVD ids: CVE-2020-11978

Trust: 3.0

Fetched: Sept. 20, 2023, 9:52 a.m., Published: Sept. 19, 2023, 4 p.m.
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2020-11978

Trust: 4.5

Fetched: Sept. 20, 2023, 9:51 a.m., Published: Sept. 12, 2023, 6:12 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: ipad air
vendor: apple model: ipad
db: NVD ids: CVE-2023-41064

Trust: 5.25

Fetched: Sept. 20, 2023, 9:49 a.m., Published: Sept. 19, 2023, 11:45 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-36845

Trust: 3.0

Fetched: Sept. 20, 2023, 9:47 a.m., Published: Sept. 20, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: mesh model: mesh

Trust: 3.25

Fetched: Sept. 20, 2023, 9:46 a.m., Published: March 24, 2021, 12:56 a.m.
Vulnerabilities: session fixation, session hijacking
Affected productsExternal IDs
vendor: essential model: phone
vendor: google model: home
vendor: google model: android

Trust: 3.75

Fetched: Sept. 20, 2023, 9:45 a.m., Published: Feb. 23, 2023, 9:50 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: netapp model: data ontap
vendor: netapp model: data ontap 7-mode
db: NVD ids: CVE-2022-38023