VARIoT news about IoT security

Trust: 5.5

Fetched: March 17, 2023, 9:20 a.m., Published: March 18, 2023, midnight
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: vivo model: modem
vendor: google model: pixel
vendor: samsung model: exynos
vendor: samsung model: mobile devices
vendor: samsung model: mobile
db: NVD ids: CVE-2023-24033

Trust: 4.75

Fetched: March 17, 2023, 9:20 a.m., Published: March 18, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: vivo model: modems
vendor: samsung model: exynos
vendor: samsung model: mobile
vendor: google model: pixel
db: NVD ids: CVE-2023-24076, CVE-2023-24074, CVE-2023-24075, CVE-2023-24073, CVE-2023-24072, CVE-2023-24033

Trust: 3.75

Fetched: March 17, 2023, 9:19 a.m., Published: March 17, 2023, 4:17 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: samsung model: exynos
vendor: samsung model: mobile devices
vendor: samsung model: mobile
vendor: google model: android
vendor: google model: pixel

Trust: 5.25

Fetched: March 17, 2023, 9:18 a.m., Published: March 17, 2023, midnight
Vulnerabilities: memory corruption
Affected productsExternal IDs
db: NVD ids: CVE-2023-0330

Trust: 4.75

Fetched: March 17, 2023, 9:16 a.m., Published: Feb. 1, 2022, 6:31 p.m.
Vulnerabilities: improper access control
Affected productsExternal IDs

Trust: 5.75

Fetched: March 17, 2023, 9:16 a.m., Published: March 16, 2023, 10:20 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: vivo model: modems
vendor: vivo model: modem
vendor: samsung model: samsung galaxy
vendor: samsung model: exynos
vendor: samsung model: mobile
vendor: samsung model: galaxy
vendor: google model: pixel
db: NVD ids: CVE-2023-24033

Trust: 3.75

Fetched: March 17, 2023, 9:15 a.m., Published: -
Vulnerabilities: denial of service
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202104-0752

Trust: 5.25

Fetched: March 17, 2023, 9:14 a.m., Published: March 3, 2023, midnight
Vulnerabilities: code injection, privilege escalation, injection attack...
Affected productsExternal IDs
vendor: check point model: check point
vendor: apple model: watchos
vendor: apple model: macos
db: NVD ids: CVE-2020-17051, CVE-2021-1844, CVE-2019-8942

Trust: 3.75

Fetched: March 17, 2023, 9:13 a.m., Published: March 17, 2023, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2022-43704
Related entries in the VARIoT vulnerabilities database: VAR-202302-1452

Trust: 5.5

Fetched: March 17, 2023, 9:13 a.m., Published: -
Vulnerabilities: denial of service, buffer overflow
Affected productsExternal IDs
vendor: cisco model: clamav
vendor: cisco model: nexus
vendor: cisco model: advanced malware protection
vendor: clamav model: clamav
db: NVD ids: CVE-2023-20014, CVE-2023-20032
Related entries in the VARIoT vulnerabilities database: VAR-202302-1902

Trust: 5.75

Fetched: March 17, 2023, 9:12 a.m., Published: Jan. 17, 2023, midnight
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: huawei model: huawei
db: NVD ids: CVE-2022-48260

Trust: 3.75

Fetched: March 17, 2023, 9:11 a.m., Published: Feb. 9, 2023, 7:15 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: motorola model: motorola
vendor: codesys model: control
vendor: codesys model: runtime
vendor: codesys model: codesys
Related entries in the VARIoT vulnerabilities database: VAR-202301-1299, VAR-202301-1297, VAR-202301-1300, VAR-202301-1298, VAR-202301-1301

Trust: 4.75

Fetched: March 17, 2023, 9:10 a.m., Published: Jan. 17, 2023, midnight
Vulnerabilities: code execution, buffer overflow, authentication bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2022-43494, CVE-2022-38469, CVE-2022-46660, CVE-2022-46732, CVE-2022-46331
Related entries in the VARIoT vulnerabilities database: VAR-202302-0029, VAR-202302-0213

Trust: 5.5

Fetched: March 17, 2023, 9:10 a.m., Published: Feb. 3, 2023, 7:26 a.m.
Vulnerabilities: code execution, command injection, default credentials...
Affected productsExternal IDs
vendor: cisco model: cisco iox application
vendor: cisco model: routers
vendor: cisco model: ios xe software
vendor: cisco model: cisco iox
vendor: cisco model: catalyst
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe
vendor: cisco model: iox application
vendor: cisco model: cisco ios
vendor: cisco model: industrial isrs
vendor: cisco model: cgr1000
vendor: cisco model: series
vendor: cisco model: ir510 wpan
vendor: cisco model: ic3000
vendor: cisco model: access points
db: NVD ids: CVE-2023-22374, CVE-2023-20076

Trust: 5.75

Fetched: March 17, 2023, 9:09 a.m., Published: March 16, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: vivo model: modems
vendor: samsung model: exynos
vendor: samsung model: mobile devices
vendor: samsung model: mobile
vendor: samsung model: note
vendor: google model: pixel
db: NVD ids: CVE-2023-26072, CVE-2023-26074, CVE-2023-26075, CVE-2023-26073, CVE-2023-24033, CVE-2023-26076

Trust: 3.5

Fetched: March 17, 2023, 9:09 a.m., Published: Feb. 9, 2023, 1:24 p.m.
Vulnerabilities: privilege escalation, information disclosure
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel

Trust: 3.5

Fetched: March 15, 2023, 9:28 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple inc. model: safari
vendor: apple model: safari
db: NVD ids: CVE-2022-32830, CVE-2022-32949, CVE-2022-32784, CVE-2022-32855, CVE-2023-23524, CVE-2018-11790, CVE-2022-32891, CVE-2023-23518, CVE-2023-23520, CVE-2023-23519, CVE-2022-26760, CVE-2022-46705, CVE-2022-22668, CVE-2007-5000, CVE-2023-23529, CVE-2023-23514, CVE-2022-32824, CVE-2023-23531, CVE-2023-23530, CVE-2022-42826, CVE-2023-23517, CVE-2022-32844, CVE-2023-23505
Related entries in the VARIoT vulnerabilities database: VAR-201907-0769, VAR-201806-1520, VAR-201806-1525, VAR-201808-0887, VAR-201806-1521

Trust: 4.0

Fetched: March 15, 2023, 9:27 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: ringcentral model: ringcentral
db: NVD ids: CVE-2018-3727, CVE-2022-20803, CVE-2019-16056, CVE-2018-3729, CVE-2019-9811, CVE-2018-3717, CVE-2018-3733, CVE-2022-23540, CVE-2019-14439, CVE-2021-43529, CVE-2023-0941, CVE-2018-3711, CVE-2023-0933, CVE-2018-3766, CVE-2018-3713, CVE-2020-12397, CVE-2018-3719, CVE-2018-3718, CVE-2018-3732, CVE-2018-3770, CVE-2019-11717, CVE-2018-3787, CVE-2023-24329, CVE-2023-0932, CVE-2018-3778, CVE-2023-0928, CVE-2018-3714, CVE-2023-0931, CVE-2023-0930, CVE-2018-3755, CVE-2018-3745, CVE-2022-23541, CVE-2018-3720, CVE-2023-0929, CVE-2020-12388

Trust: 3.75

Fetched: March 15, 2023, 9:27 a.m., Published: March 9, 2023, midnight
Vulnerabilities: cross-site scripting, response splitting vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2023-27522, CVE-2023-25690

Trust: 3.75

Fetched: March 15, 2023, 9:26 a.m., Published: March 8, 2023, 10:32 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: ipod touch
vendor: apple model: macos
vendor: apple model: ipad air
vendor: apple model: ipad
vendor: apple model: webkit