VARIoT news about IoT security

Trust: 3.75

Fetched: Jan. 10, 2023, 9:15 a.m., Published: Jan. 9, 2023, 6:50 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel
vendor: samsung model: galaxy
vendor: samsung model: mobile
Related entries in the VARIoT vulnerabilities database: VAR-202301-0521

Trust: 4.25

Fetched: Jan. 10, 2023, 9:15 a.m., Published: Jan. 9, 2023, 7:58 p.m.
Vulnerabilities: memory leak, code execution, buffer overflow...
Affected productsExternal IDs
vendor: lenovo model: updates
vendor: lenovo model: thinkpad
vendor: lenovo model: system
db: NVD ids: CVE-2022-4432, CVE-2022-40519, CVE-2022-40516, CVE-2022-4435, CVE-2022-40520, CVE-2022-4433, CVE-2022-40517, CVE-2022-40518, CVE-2022-4434

Trust: 5.0

Fetched: Jan. 10, 2023, 9:15 a.m., Published: Jan. 10, 2023, midnight
Vulnerabilities: privilege escalation
Related entries in the VARIoT vulnerabilities database: VAR-202301-0521

Trust: 4.25

Fetched: Jan. 10, 2023, 9:14 a.m., Published: Jan. 9, 2023, midnight
Vulnerabilities: code execution, information disclosure
Affected productsExternal IDs
vendor: lenovo model: updates
vendor: lenovo model: thinkpad
vendor: lenovo model: system
db: NVD ids: CVE-2022-40516, CVE-2022-40520, CVE-2022-40517

Trust: 4.5

Fetched: Jan. 10, 2023, 9:11 a.m., Published: Dec. 8, 2022, 7:15 p.m.
Vulnerabilities: code execution, weak password
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2022-45482, CVE-2022-45481, CVE-2022-45478, CVE-2022-45477, CVE-2022-45479, CVE-2022-45480, CVE-2022-45483

Trust: 3.5

Fetched: Jan. 10, 2023, 9:11 a.m., Published: Jan. 10, 2022, midnight
Vulnerabilities: code execution, information disclosure
Affected productsExternal IDs
vendor: lenovo model: thinkpad
vendor: lenovo model: system
vendor: lenovo model: updates
Related entries in the VARIoT vulnerabilities database: VAR-202210-0198

Trust: 4.0

Fetched: Jan. 10, 2023, 9:11 a.m., Published: Jan. 5, 2023, 6 p.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2022-40684

Trust: 4.5

Fetched: Jan. 10, 2023, 9:10 a.m., Published: Nov. 17, 2022, 11:48 p.m.
Vulnerabilities: policy violation, script execution
Affected productsExternal IDs
vendor: essential model: phone

Trust: 3.0

Fetched: Jan. 8, 2023, 9:17 a.m., Published: Jan. 8, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: pixel

Trust: 3.25

Fetched: Jan. 8, 2023, 9:16 a.m., Published: Jan. 30, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: netgear model: router

Trust: 3.25

Fetched: Jan. 8, 2023, 9:15 a.m., Published: Dec. 30, 2022, 1:02 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: netgear model: router

Trust: 3.75

Fetched: Jan. 8, 2023, 9:15 a.m., Published: Jan. 5, 2023, 5:01 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.5

Fetched: Jan. 8, 2023, 9:15 a.m., Published: Dec. 30, 2022, 11:30 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: google home
vendor: google model: android
vendor: google model: home

Trust: 3.75

Fetched: Jan. 8, 2023, 9:14 a.m., Published: Jan. 4, 2023, 1:14 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: samsung model: knox
vendor: samsung model: note
vendor: samsung model: galaxy
vendor: samsung model: note 10
vendor: samsung model: galaxy note
vendor: google model: android

Trust: 3.0

Fetched: Jan. 8, 2023, 9:13 a.m., Published: Jan. 4, 2023, 12:32 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: thinkpad
vendor: lenovo model: bios

Trust: 3.5

Fetched: Jan. 8, 2023, 9:13 a.m., Published: April 15, 2021, 4 p.m.
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs

Trust: 3.75

Fetched: Jan. 8, 2023, 9:12 a.m., Published: Jan. 5, 2023, midnight
Vulnerabilities: sql injection
Affected productsExternal IDs

Trust: 3.75

Fetched: Jan. 6, 2023, 9:19 a.m., Published: Dec. 29, 2022, 6:55 p.m.
Vulnerabilities: denial of service, buffer overflow, code execution
Affected productsExternal IDs
vendor: netgear model: netgear router
vendor: netgear model: orbi
vendor: netgear model: rax40
vendor: netgear model: rax35
vendor: netgear model: router
vendor: netgear model: r7000p
vendor: netgear model: r8000p firmware
vendor: netgear model: r6700v3
vendor: netgear model: rax40 firmware
vendor: netgear model: r7000p firmware
vendor: netgear model: r8000p
vendor: netgear model: r6400v2
vendor: netgear model: r6900p
vendor: netgear model: r6900p firmware

Trust: 3.75

Fetched: Jan. 6, 2023, 9:19 a.m., Published: Dec. 6, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: samsung model: note
vendor: samsung model: mobile
vendor: samsung model: galaxy
vendor: samsung model: samsung galaxy
vendor: comcast model: xfinity
Related entries in the VARIoT vulnerabilities database: VAR-202212-1132

Trust: 3.25

Fetched: Jan. 6, 2023, 9:17 a.m., Published: June 16, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-42475