VARIoT news about IoT security

Trust: 5.25

Fetched: Nov. 4, 2022, 2:03 p.m., Published: Nov. 4, 2050, midnight
Vulnerabilities: request forgery, cross-site request forgery, improper validation...
Affected productsExternal IDs
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco unity connection
vendor: cisco model: nexus
vendor: cisco model: unified communications manager session management edition
vendor: cisco model: rv130
vendor: cisco model: cisco unified communications manager
vendor: cisco model: webex meetings
vendor: cisco model: identity services engine
vendor: cisco model: telepresence
vendor: cisco model: data center network manager
vendor: cisco model: application policy infrastructure controller
vendor: cisco model: ios software
vendor: cisco model: unity
vendor: cisco model: sd-wan
vendor: cisco model: unified communications manager
vendor: cisco model: unity connection
vendor: cisco model: webex teams
vendor: cisco model: ios xe sd-wan software
vendor: cisco model: cisco webex meetings
vendor: cisco model: cisco sd-wan
vendor: cisco model: cisco webex
vendor: cisco model: rv110w
vendor: cisco model: routers
vendor: cisco model: webex
vendor: cisco model: roomos
vendor: cisco model: rv215w
vendor: cisco model: cisco application policy infrastructure controller
vendor: cisco model: ios xe software
vendor: cisco model: telepresence collaboration endpoint
vendor: cisco model: ios xe
vendor: cisco model: cisco telepresence
vendor: cisco model: cisco small business
vendor: cisco model: cisco identity services engine
vendor: cisco model: rv130w
vendor: cisco model: cisco ios
vendor: cisco model: small business
vendor: cisco model: unified communications
vendor: cisco model: cisco roomos
vendor: cisco model: cisco unity
db: NVD ids: CVE-2022-22807, CVE-2022-20916, CVE-2022-20879, CVE-2022-20876, CVE-2022-20885, CVE-2022-20913, CVE-2022-20869, CVE-2022-20863, CVE-2022-20882, CVE-2022-20890, CVE-2022-20875, CVE-2022-20822, CVE-2022-20906, CVE-2022-20915, CVE-2022-20880, CVE-2022-20857, CVE-2022-20861, CVE-2022-20909, CVE-2022-20878, CVE-2022-22809, CVE-2022-20887, CVE-2022-20889, CVE-2022-20908, CVE-2022-20886, CVE-2022-20858, CVE-2022-20884, CVE-2022-20860, CVE-2022-20852, CVE-2022-20910, CVE-2022-20920, CVE-2022-20877, CVE-2022-20955, CVE-2022-20874, CVE-2022-20914, CVE-2022-20881, CVE-2022-20953, CVE-2022-20830, CVE-2022-20954, CVE-2022-20930, CVE-2022-20959, CVE-2022-20850, CVE-2022-20862, CVE-2022-20907, CVE-2022-20873, CVE-2022-20888, CVE-2022-20859, CVE-2022-20883, CVE-2022-20844, CVE-2022-20921, CVE-2022-22965

Trust: 5.5

Fetched: Nov. 4, 2022, 2:03 p.m., Published: Nov. 1, 2022, midnight
Vulnerabilities: command injection, improper validation, directory traversal...
Affected productsExternal IDs
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco iox
vendor: cisco model: ios software
vendor: cisco model: cisco iox application
vendor: cisco model: industrial ethernet
vendor: cisco model: iox application
vendor: cisco model: ios xe software
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: rockwell automation model: automation stratix
vendor: rockwell model: automation stratix
db: NVD ids: CVE-2020-3218, CVE-2020-3200, CVE-2020-3211, CVE-2021-1446, CVE-2021-1385, CVE-2020-3229, CVE-2020-3209, CVE-2020-3516, CVE-2020-3219

Trust: 4.0

Fetched: Nov. 4, 2022, 2:03 p.m., Published: Oct. 25, 2022, 6:05 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-26501, CVE-2022-26504, CVE-2022-26500

Trust: 5.0

Fetched: Nov. 4, 2022, 2:02 p.m., Published: Nov. 2, 2022, 11:40 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cloud email security
vendor: cisco model: cisco cloud email security
vendor: cisco model: cisco email security appliance
vendor: cisco model: email security appliance
Related entries in the VARIoT vulnerabilities database: VAR-202210-0504, VAR-202210-0503, VAR-202210-0505

Trust: 3.75

Fetched: Nov. 4, 2022, 1:59 p.m., Published: Nov. 8, 2022, midnight
Vulnerabilities: improper validation
Affected productsExternal IDs
db: NVD ids: CVE-2022-36361, CVE-2022-36362, CVE-2022-36363

Trust: 4.75

Fetched: Nov. 4, 2022, 1:58 p.m., Published: Oct. 25, 2022, 8:07 p.m.
Vulnerabilities: improper memory handling, use after free, memory corruption...
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: ipad air
vendor: apple model: macos
vendor: apple model: ipad
vendor: apple model: safari
vendor: apple model: webkit

Trust: 3.75

Fetched: Nov. 4, 2022, 1:58 p.m., Published: Oct. 11, 2022, midnight
Vulnerabilities: default password
Affected productsExternal IDs
db: NVD ids: CVE-2022-36158
Related entries in the VARIoT vulnerabilities database: VAR-202210-1624

Trust: 4.75

Fetched: Nov. 4, 2022, 1:58 p.m., Published: Oct. 26, 2022, 3:29 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: ipad air
vendor: apple model: macos
vendor: apple model: ipad
vendor: apple model: watchos
vendor: apple model: tvos
vendor: apple model: safari
db: NVD ids: CVE-2022-42827
Related entries in the VARIoT vulnerabilities database: VAR-202210-0198

Trust: 4.0

Fetched: Nov. 4, 2022, 1:57 p.m., Published: Nov. 4, 2022, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2022-40684

Trust: 3.5

Fetched: Nov. 4, 2022, 1:56 p.m., Published: Oct. 19, 2022, 9:04 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2020-16011, CVE-2020-15992, CVE-2020-26971

Trust: 3.0

Fetched: Nov. 4, 2022, 1:50 p.m., Published: Oct. 17, 2022, 9:44 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.0

Fetched: Nov. 4, 2022, 1:49 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: blackberry model: blackberry

Trust: 3.0

Fetched: Nov. 4, 2022, 1:41 p.m., Published: Oct. 30, 2020, 7:46 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2020-14750, CVE-2020-14882

Trust: 3.75

Fetched: Nov. 4, 2022, 1:30 p.m., Published: Aug. 17, 2022, 12:48 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: cisco model: asa software
vendor: cisco model: security device manager
vendor: cisco model: firepower
vendor: cisco model: asdm
vendor: cisco model: intrusion prevention system
vendor: cisco model: adaptive security appliance
vendor: cisco model: adaptive security device manager
vendor: cisco model: adaptive security appliance software
vendor: cisco model: firepower threat defense
vendor: cisco model: firepower management center
vendor: cisco model: device manager

Trust: 4.75

Fetched: June 9, 2022, 1:20 p.m., Published: May 3, 2022, 8:07 a.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: google model: chrome
vendor: google model: google chrome

Trust: 5.75

Fetched: June 9, 2022, 1:20 p.m., Published: May 13, 2022, 9:30 p.m.
Vulnerabilities: access control vulnerability, open redirect issue, improper access control...
Affected productsExternal IDs
vendor: sonicwall model: secure mobile access
vendor: sonicwall model: sma1000
db: NVD ids: CVE-2022-22282

Trust: 4.25

Fetched: June 9, 2022, 1:13 p.m., Published: May 13, 2022, 8:21 p.m.
Vulnerabilities: default credentials, denial of service
Affected productsExternal IDs
vendor: avast model: antivirus
vendor: trend micro model: security
vendor: trend micro model: antivirus
vendor: trend model: security
vendor: trend model: antivirus

Trust: 4.0

Fetched: June 9, 2022, 1:12 p.m., Published: Jan. 9, 2050, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2022-22972, CVE-2022-22973
Related entries in the VARIoT vulnerabilities database: VAR-202205-0394

Trust: 5.0

Fetched: June 9, 2022, 1:11 p.m., Published: May 10, 2022, 8:18 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-1388

Trust: 3.75

Fetched: June 9, 2022, 1:08 p.m., Published: May 31, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2021-42598, CVE-2021-42599, CVE-2021-42600, CVE-2021-42601