VARIoT news about IoT security

Trust: 3.0

Fetched: Nov. 17, 2023, 9:08 a.m., Published: Nov. 9, 2023, 12:35 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-35841, CVE-2023-20598

Trust: 4.75

Fetched: Nov. 17, 2023, 9:06 a.m., Published: Nov. 15, 2023, 10:05 a.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: cisco model: unified sip phone
vendor: cisco model: unified ip phone
vendor: cisco model: unified sip phone 3905
vendor: cisco model: ip phone

Trust: 3.0

Fetched: Nov. 17, 2023, 9:05 a.m., Published: Nov. 15, 2023, 10:05 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: identity services engine
vendor: cisco model: cisco identity services engine

Trust: 4.0

Fetched: Nov. 15, 2023, 10:09 a.m., Published: Nov. 14, 2023, midnight
Vulnerabilities: code execution, cross-site scripting, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2023-41249, CVE-2023-4347, CVE-2023-41265, CVE-2023-42120, CVE-2023-46604, CVE-2023-42123, CVE-2023-2164, CVE-2023-23840

Trust: 3.0

Fetched: Nov. 15, 2023, 10:08 a.m., Published: May 6, 2023, midnight
Vulnerabilities: os command injection, command injection
Affected productsExternal IDs

Trust: 3.25

Fetched: Nov. 15, 2023, 10:07 a.m., Published: Nov. 9, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 4.25

Fetched: Nov. 15, 2023, 10:06 a.m., Published: Nov. 10, 2023, midnight
Vulnerabilities: authentication bypass, code execution, authorization vulnerability
Affected productsExternal IDs
vendor: trend micro model: security
vendor: trend model: security
db: NVD ids: CVE-2023-22518, CVE-2023-022518

Trust: 4.5

Fetched: Nov. 15, 2023, 10:05 a.m., Published: Oct. 26, 2023, 4:49 p.m.
Vulnerabilities: information leakage
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: safari
vendor: apple model: webkit
db: NVD ids: CVE-2022-40982, CVE-2023-20583, CVE-2023-20569
Related entries in the VARIoT vulnerabilities database: VAR-202310-1140

Trust: 5.25

Fetched: Nov. 15, 2023, 10 a.m., Published: Oct. 28, 2023, 1:51 p.m.
Vulnerabilities: sql injection
Affected productsExternal IDs
vendor: d-link model: dar-7000
db: NVD ids: CVE-2023-42406

Trust: 3.25

Fetched: Nov. 15, 2023, 10 a.m., Published: Nov. 14, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 3.0

Fetched: Nov. 15, 2023, 9:58 a.m., Published: Nov. 14, 2023, midnight
Vulnerabilities: configuration error
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202103-0773

Trust: 4.0

Fetched: Nov. 15, 2023, 9:57 a.m., Published: Oct. 20, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: cisco ios
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
db: NVD ids: CVE-2023-20198, CVE-2023-20273, CVE-2021-1435

Trust: 3.0

Fetched: Nov. 15, 2023, 9:57 a.m., Published: Nov. 10, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 3.25

Fetched: Nov. 15, 2023, 9:56 a.m., Published: Nov. 14, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 3.25

Fetched: Nov. 15, 2023, 9:55 a.m., Published: Nov. 15, 3515, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 3.25

Fetched: Nov. 15, 2023, 9:55 a.m., Published: Nov. 15, 3585, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 4.0

Fetched: Nov. 15, 2023, 9:55 a.m., Published: Nov. 15, 2023, 7:58 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: google model: android

Trust: 3.75

Fetched: Nov. 15, 2023, 9:53 a.m., Published: Nov. 15, 2023, 7:37 a.m.
Vulnerabilities: code execution, memory leak, feature bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2023-36033, CVE-2023-36025, CVE-2023-36036

Trust: 3.5

Fetched: Nov. 15, 2023, 9:53 a.m., Published: Oct. 24, 2023, 2:40 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
db: NVD ids: CVE-2023-20198, CVE-2023-20273

Trust: 3.5

Fetched: Nov. 15, 2023, 9:51 a.m., Published: Nov. 15, 2023, midnight
Vulnerabilities: code injection
Affected productsExternal IDs
vendor: cisco model: series
vendor: cisco model: catalyst