VARIoT news about IoT security

Trust: 3.0

Fetched: Oct. 10, 2023, 9:52 a.m., Published: Oct. 10, 3330, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios
vendor: dell model: latitude

Trust: 3.5

Fetched: Oct. 10, 2023, 9:44 a.m., Published: Nov. 8, 2021, 5:35 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: intrusion prevention system
vendor: cisco model: cloud portal
vendor: trend micro model: password manager
vendor: trend micro model: security
vendor: trend micro model: antivirus
vendor: trend model: password manager
vendor: trend model: security
vendor: trend model: antivirus
vendor: avast model: antivirus
vendor: symantec model: advanced threat protection
vendor: symantec model: antivirus
vendor: symantec model: endpoint protection

Trust: 3.75

Fetched: Oct. 10, 2023, 9:44 a.m., Published: Oct. 3, 2023, 8:31 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: motorola model: motorola
vendor: motorola model: android
vendor: samsung model: galaxy
vendor: google model: pixel
vendor: google model: android
vendor: xiaomi model: redmi
vendor: asus model: asus
db: NVD ids: CVE-2023-4211, CVE-2023-33200, CVE-2023-34970

Trust: 3.5

Fetched: Oct. 10, 2023, 9:40 a.m., Published: Oct. 1, 2002, midnight
Vulnerabilities: memory leak
Affected productsExternal IDs
vendor: cisco model: router
vendor: cisco model: sd-wan
vendor: cisco model: series
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: firewall interface
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo model: firewall interface
vendor: broadcom model: linux
vendor: google model: android
Related entries in the VARIoT vulnerabilities database: VAR-202212-1492, VAR-202306-1795, VAR-202302-1444, VAR-202302-1452, VAR-202302-1271, VAR-202307-1372

Trust: 4.25

Fetched: Oct. 10, 2023, 9:36 a.m., Published: -
Vulnerabilities: path traversal, privilege escalation, denial of service...
Affected productsExternal IDs
vendor: cisco model: firepower
vendor: cisco model: network access control
vendor: cisco model: service management
vendor: cisco model: cisco sd-wan
vendor: cisco model: netscaler gateway
vendor: cisco model: clamav
vendor: cisco model: spa112
vendor: cisco model: catalyst
vendor: cisco model: adaptive security appliance
vendor: cisco model: anyconnect secure mobility client software
vendor: cisco model: cisco anyconnect secure mobility client
vendor: cisco model: anyconnect secure mobility client
vendor: cisco model: wan manager
vendor: cisco model: sd-wan vmanage
vendor: cisco model: sd-wan
vendor: cisco model: series
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: sd-wan vmanage software
vendor: essential model: phone
vendor: sonicwall model: ssl vpn
vendor: sonicwall model: web application firewall
vendor: sonicwall model: remote access
vendor: apple model: watchos
vendor: apple model: macos
vendor: fortigate model: fortios
vendor: google model: google chrome
vendor: google model: chrome
vendor: clamav model: clamav
vendor: mobileiron model: mobileiron sentry
vendor: mobileiron model: sentry
vendor: citrix model: netscaler gateway
vendor: citrix model: netscaler adc
vendor: citrix model: gateway
vendor: citrix model: sd-wan
vendor: citrix model: netscaler
db: NVD ids: CVE-2022-41272, CVE-2023-41991, CVE-2023-21529, CVE-2023-20890, CVE-2023-21715, CVE-2023-21823, CVE-2023-32243, CVE-2023-27497, CVE-2023-20126, CVE-2022-41953, CVE-2023-4911, CVE-2023-40044, CVE-2023-35082, CVE-2023-42657, CVE-2023-27532, CVE-2022-27596, CVE-2023-2825, CVE-2023-41993, CVE-2023-22508, CVE-2022-41903, CVE-2023-23857, CVE-2023-29357, CVE-2023-28782, CVE-2023-23376, CVE-2023-3128, CVE-2023-35036, CVE-2023-28765, CVE-2023-22506, CVE-2023-22513, CVE-2023-23397, CVE-2023-27898, CVE-2023-38408, CVE-2023-33299, CVE-2023-27997, CVE-2023-25617, CVE-2023-21706, CVE-2022-31704, CVE-2023-4863, CVE-2023-22501, CVE-2023-25616, CVE-2023-29343, CVE-2023-22515, CVE-2023-24955, CVE-2023-21554, CVE-2023-0286, CVE-2023-27269, CVE-2021-42756, CVE-2023-41992, CVE-2023-2640, CVE-2023-26369, CVE-2023-4998, CVE-2022-31706, CVE-2022-23521, CVE-2023-25136, CVE-2023-22505, CVE-2023-20032, CVE-2022-39952, CVE-2023-32629, CVE-2023-21707, CVE-2023-25610, CVE-2023-33308, CVE-2023-35081, CVE-2023-5217, CVE-2023-42824, CVE-2023-41061, CVE-2023-38035, CVE-2023-27905, CVE-2023-27267, CVE-2023-20214, CVE-2023-3079, CVE-2023-34039, CVE-2023-35078, CVE-2023-30777, CVE-2023-23392, CVE-2023-34362, CVE-2022-41331, CVE-2023-27500, CVE-2023-41064, CVE-2023-2033

Trust: 4.5

Fetched: Oct. 10, 2023, 9:35 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: wifi
vendor: google model: google wifi
vendor: google model: chromecast
vendor: google model: android
vendor: nest model: nest cam
vendor: nest model: learning thermostat

Trust: 3.75

Fetched: Oct. 10, 2023, 9:34 a.m., Published: May 21, 2021, 12:39 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2020-26139, CVE-2020-26147, CVE-2020-26141, CVE-2020-26145, CVE-2020-26146, CVE-2020-26142, CVE-2020-24587, CVE-2020-26140, CVE-2021-26139, CVE-2020-24588, CVE-2020-26143, CVE-2020-26144, CVE-2020-24586
Related entries in the VARIoT vulnerabilities database: VAR-202105-0569

Trust: 5.5

Fetched: Oct. 10, 2023, 9:34 a.m., Published: Sept. 2, 2021, 6:12 p.m.
Vulnerabilities: privilege escalation, denial of service, memory corruption
Affected productsExternal IDs
vendor: dell model: bios
db: NVD ids: CVE-2021-21551

Trust: 4.0

Fetched: Oct. 10, 2023, 9:33 a.m., Published: May 12, 2021, 1:07 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: router
db: NVD ids: CVE-2020-26139, CVE-2020-26147, CVE-2020-26141, CVE-2020-26145, CVE-2020-26142, CVE-2020-24587, CVE-2020-26140, CVE-2020-24588, CVE-2020-26143, CVE-2020-26146, CVE-2020-24586, CVE-2020-26144
Related entries in the VARIoT vulnerabilities database: VAR-199603-0003

Trust: 3.5

Fetched: Oct. 10, 2023, 9:32 a.m., Published: Oct. 10, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: meeting
vendor: huawei model: huawei
db: NVD ids: CVE-1999-0067, CVE-2014-12345, CVE-2016-7654321

Trust: 3.0

Fetched: Oct. 10, 2023, 9:32 a.m., Published: Sept. 9, 2022, midnight
Vulnerabilities: format string vulnerability
Affected productsExternal IDs

Trust: 4.25

Fetched: Oct. 10, 2023, 9:26 a.m., Published: Jan. 29, 2021, midnight
Vulnerabilities: integer overflow, privilege escalation, code execution...
Affected productsExternal IDs
vendor: google model: wifi
vendor: google model: android

Trust: 4.5

Fetched: Oct. 10, 2023, 9:24 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: motorola model: motorola
vendor: motorola model: android
vendor: samsung model: galaxy
vendor: samsung model: galaxy s5
vendor: google model: android
vendor: google model: nexus
db: NVD ids: CVE-2015-3825

Trust: 3.75

Fetched: Oct. 10, 2023, 9:23 a.m., Published: -
Vulnerabilities: default credentials
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-201810-0569

Trust: 5.75

Fetched: Oct. 10, 2023, 9:23 a.m., Published: April 1, 2004, 8:19 p.m.
Vulnerabilities: memory leak
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe software
vendor: cisco model: ios software
vendor: cisco model: industrial ethernet
db: NVD ids: CVE-2018-15377
db: CISCO ids: CISCO-SA-20180926-PNP

Trust: 4.25

Fetched: Oct. 10, 2023, 9:20 a.m., Published: Aug. 10, 2021, midnight
Vulnerabilities: information leakage, replay attack, buffer overflow...
Affected productsExternal IDs
vendor: trend model: security
vendor: axis model: communications
vendor: schneider model: monitor
vendor: schneider model: concept

Trust: 4.5

Fetched: Oct. 10, 2023, 9:19 a.m., Published: Oct. 7, 2023, midnight
Vulnerabilities: buffer overflow, denial of service, command injection...
Affected productsExternal IDs
db: NVD ids: CVE-2023-34139, CVE-2023-28767, CVE-2023-34141, CVE-2023-34138, CVE-2023-33011, CVE-2023-34140, CVE-2023-33012
Related entries in the VARIoT vulnerabilities database: VAR-202205-1958, VAR-202205-0394

Trust: 5.25

Fetched: Oct. 10, 2023, 9:18 a.m., Published: Aug. 21, 2023, 9:48 a.m.
Vulnerabilities: privilege escalation, directory traversal, code execution
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2022-30190, CVE-2022-1388, CVE-2022-27925, CVE-2022-0609

Trust: 3.5

Fetched: Oct. 10, 2023, 9:12 a.m., Published: July 14, 2023, 9:20 a.m.
Vulnerabilities: request forgery, cross-site request forgery, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2020-28017, CVE-2020-28026, CVE-2017-7494
Related entries in the VARIoT vulnerabilities database: VAR-202207-1770

Trust: 4.0

Fetched: Oct. 10, 2023, 9:11 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: moxa model: nport 5200a
vendor: moxa model: nport 5110
vendor: moxa model: nport 5200a series
vendor: moxa model: nport
vendor: moxa model: nport 5200a series firmware
db: NVD ids: CVE-2022-2043, CVE-2022-2044