VARIoT news about IoT security

Trust: 5.5

Fetched: April 12, 2023, 9:25 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: ipad
vendor: apple model: macos
db: NVD ids: CVE-2023-28206, CVE-2023-28205

Trust: 5.25

Fetched: April 12, 2023, 9:23 a.m., Published: April 16, 2023, midnight
Vulnerabilities: memory corruption, buffer overflow, configuration issue...
Affected productsExternal IDs
vendor: trend model: security
vendor: trend micro model: security
vendor: check point model: check point
vendor: apple model: watch
vendor: apple model: iphone
vendor: apple model: webkit
vendor: apple model: safari
vendor: apple model: apple tv
db: NVD ids: CVE-2022-32827, CVE-2022-32928, CVE-2022-32903, CVE-2022-32859, CVE-2022-32875, CVE-2022-32898, CVE-2022-32892, CVE-2022-32908, CVE-2022-32886, CVE-2022-42790, CVE-2022-32918, CVE-2022-32872, CVE-2022-32881, CVE-2022-32913, CVE-2022-32907, CVE-2022-32795, CVE-2022-32925, CVE-2022-32912, CVE-2022-32879, CVE-2022-32914, CVE-2022-42793, CVE-2022-32866, CVE-2022-46709, CVE-2022-32911, CVE-2022-32858, CVE-2022-32889, CVE-2022-32867, CVE-2022-32868, CVE-2022-32887, CVE-2022-32883, CVE-2022-32917, CVE-2022-32870, CVE-2022-32835, CVE-2022-42791, CVE-2022-32888, CVE-2022-32909, CVE-2022-32916, CVE-2022-32793, CVE-2022-42795, CVE-2021-36690, CVE-2022-32833, CVE-2022-32854, CVE-2022-32871, CVE-2022-32865, CVE-2022-32877, CVE-2022-32891, CVE-2022-26744, CVE-2022-1622, CVE-2022-32899, CVE-2022-22643, CVE-2022-32864

Trust: 5.75

Fetched: April 12, 2023, 9:23 a.m., Published: April 8, 2023, 5:29 a.m.
Vulnerabilities: privilege escalation, code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2023-21096, CVE-2023-21085, CVE-2023-23397, CVE-2022-38181

Trust: 5.75

Fetched: April 12, 2023, 9:22 a.m., Published: April 11, 2023, 10:26 a.m.
Vulnerabilities: use after free
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: macos
vendor: apple model: webkit
vendor: apple model: ipad air
vendor: apple model: ipad
vendor: google model: pixel
db: NVD ids: CVE-2023-28206, CVE-2023-28205

Trust: 4.25

Fetched: April 12, 2023, 9:22 a.m., Published: April 11, 2023, 12:02 p.m.
Vulnerabilities: use after free, code execution
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: iphone
vendor: apple model: webkit
vendor: apple model: ipad
vendor: apple model: macos
db: NVD ids: CVE-2023-28206, CVE-2023-28205

Trust: 5.75

Fetched: April 12, 2023, 9:21 a.m., Published: April 11, 2023, 5 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: macos
vendor: apple model: webkit
vendor: apple model: safari
vendor: apple model: ipad
vendor: google model: android
db: NVD ids: CVE-2023-28206, CVE-2023-28205

Trust: 5.75

Fetched: April 12, 2023, 9:21 a.m., Published: March 7, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: trend micro model: security
vendor: trend model: security
db: NVD ids: CVE-2023-1399

Trust: 3.0

Fetched: April 12, 2023, 9:20 a.m., Published: Dec. 18, 2020, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2019-0608
Related entries in the VARIoT vulnerabilities database: VAR-202302-1271, VAR-202210-0198, VAR-202112-1045, VAR-201906-0815, VAR-201710-0216

Trust: 4.25

Fetched: April 12, 2023, 9:19 a.m., Published: April 1, 2023, midnight
Vulnerabilities: denial of service, sql injection, buffer overflow...
Affected productsExternal IDs
vendor: trend micro model: antivirus
vendor: trend micro model: security
vendor: sophos model: firewall
vendor: orange model: web server
vendor: checkpoint model: next generation
vendor: cisco model: access points
vendor: fortigate model: fortios
vendor: palo model: ssl vpn
vendor: palo model: networks
vendor: palo model: firewall
vendor: barracuda model: barracuda
vendor: trend model: antivirus
vendor: trend model: security
db: NVD ids: CVE-2022-39952, CVE-2021-32589, CVE-2023-26209, CVE-2022-40684, CVE-2021-41028, CVE-2018-13379, CVE-2017-14182

Trust: 3.75

Fetched: April 12, 2023, 9:19 a.m., Published: April 4, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-27598, CVE-2022-27597

Trust: 3.0

Fetched: April 12, 2023, 9:18 a.m., Published: Dec. 18, 2020, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2019-0608

Trust: 5.5

Fetched: April 12, 2023, 9:18 a.m., Published: April 1, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: check point model: check point
vendor: palo alto networks model: networks
vendor: palo model: networks
db: NVD ids: CVE-2022-27926

Trust: 5.0

Fetched: April 12, 2023, 9:18 a.m., Published: April 5, 2023, 3:47 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: prime infrastructure
vendor: cisco model: cisco identity services engine
vendor: cisco model: cisco prime infrastructure
vendor: cisco model: cisco evolved programmable network manager
vendor: cisco model: identity services engine
vendor: cisco model: evolved programmable network manager

Trust: 4.0

Fetched: April 12, 2023, 9:17 a.m., Published: April 5, 2023, 8:30 p.m.
Vulnerabilities: command execution
Affected productsExternal IDs
vendor: cisco model: rv325
vendor: cisco model: service management
vendor: cisco model: rv042
vendor: cisco model: rv320
vendor: cisco model: rv082
vendor: cisco model: small business rv320
vendor: cisco model: rv042g
vendor: cisco model: cisco small business rv320
vendor: cisco model: routers
vendor: cisco model: small business
vendor: cisco model: cisco small business
vendor: cisco model: rv016

Trust: 4.0

Fetched: April 12, 2023, 9:16 a.m., Published: April 5, 2023, 3:47 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: rv325 dual gigabit wan vpn
vendor: cisco model: rv325
vendor: cisco model: routers
vendor: cisco model: small business rv320
vendor: cisco model: rv320
vendor: cisco model: small business
vendor: cisco model: cisco small business rv320
vendor: cisco model: cisco small business

Trust: 4.25

Fetched: April 12, 2023, 9:16 a.m., Published: -
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: amazon model: fire tv
vendor: amazon model: echo show

Trust: 3.0

Fetched: April 12, 2023, 9:15 a.m., Published: Dec. 18, 2020, midnight
Vulnerabilities: privilege escalation, denial of service
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202302-1097

Trust: 4.75

Fetched: April 12, 2023, 9:15 a.m., Published: April 10, 2023, 3:50 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: macos
vendor: apple model: webkit
vendor: apple model: ipad air
vendor: apple model: safari
vendor: apple model: ipad
vendor: trend model: security
db: NVD ids: CVE-2023-23529, CVE-2023-28206, CVE-2023-28205

Trust: 3.0

Fetched: April 11, 2023, 9:17 a.m., Published: April 5, 2023, 10:32 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-27597, CVE-2022-27598

Trust: 4.75

Fetched: April 11, 2023, 9:16 a.m., Published: April 10, 2023, 11:47 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: webkit
vendor: apple model: iphone
vendor: apple model: safari
vendor: apple model: ipad air
vendor: apple model: ipad
db: NVD ids: CVE-2023-28206, CVE-2023-28205