VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202212-1301

Trust: 6.0

Fetched: Dec. 28, 2022, 9:18 a.m., Published: Dec. 19, 2022, 9:06 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: siemens model: cp300
vendor: siemens model: cp200
vendor: siemens model: siprotec
vendor: siemens model: siprotec 5
db: NVD ids: CVE-2022-45044

Trust: 5.25

Fetched: Dec. 28, 2022, 9:17 a.m., Published: -
Vulnerabilities: command execution, path traversal, buffer overflow...
Affected productsExternal IDs
vendor: sonicwall model: sma 100
vendor: sonicwall model: sma100
db: NVD ids: CVE-2021-20042, CVE-2021-20039, CVE-2021-20041, CVE-2021-20045, CVE-2021-20043, CVE-2021-20044, CVE-2021-20040, CVE-2021-20038

Trust: 4.5

Fetched: Dec. 28, 2022, 9:17 a.m., Published: Dec. 1, 2022, midnight
Vulnerabilities: denial of service, buffer overflow, input validation vulnerability...
Affected productsExternal IDs
db: NVD ids: CVE-2022-37890, CVE-2022-37885, CVE-2022-37887, CVE-2022-37889, CVE-2022-37891, CVE-2022-37892, CVE-2022-37894, CVE-2022-37896, CVE-2022-37895, CVE-2022-37886, CVE-2002-20001, CVE-2022-37893, CVE-2022-37888

Trust: 5.0

Fetched: Dec. 28, 2022, 9:16 a.m., Published: Nov. 9, 2022, 11:42 a.m.
Vulnerabilities: denial of service, buffer overflow, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-3609, CVE-2022-3602, CVE-2022-3786

Trust: 4.0

Fetched: Dec. 27, 2022, 9:29 a.m., Published: Dec. 19, 2022, 6:05 p.m.
Vulnerabilities: command execution
Affected productsExternal IDs

Trust: 3.0

Fetched: Dec. 27, 2022, 9:27 a.m., Published: Dec. 21, 2022, 10:41 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: iphone

Trust: 3.25

Fetched: Dec. 27, 2022, 9:27 a.m., Published: May 6, 2022, midnight
Vulnerabilities: buffer overflow
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202212-1290, VAR-202205-1302

Trust: 5.0

Fetched: Dec. 27, 2022, 9:27 a.m., Published: Dec. 19, 2022, 7:59 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: macos
db: NVD ids: CVE-2022-42821, CVE-2022-26706

Trust: 4.0

Fetched: Dec. 27, 2022, 9:26 a.m., Published: Dec. 19, 2022, 9:29 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: comcast model: xfinity
Related entries in the VARIoT vulnerabilities database: VAR-202110-1690, VAR-201903-1398, VAR-201712-0828

Trust: 4.75

Fetched: Dec. 27, 2022, 9:26 a.m., Published: Dec. 25, 2022, 4:40 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: d-link model: dsl-2750b
vendor: tenda model: ac1200
db: NVD ids: CVE-2022-30023, CVE-2022-33891, CVE-2021-42013, CVE-2022-31137, CVE-2019-10655, CVE-2017-17105, CVE-2020-25223
Related entries in the VARIoT vulnerabilities database: VAR-202212-0864

Trust: 4.5

Fetched: Dec. 27, 2022, 9:25 a.m., Published: -
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco model: link layer discovery protocol
vendor: cisco model: ip phone
vendor: cisco model: ip phone 7800
vendor: cisco model: series
db: NVD ids: CVE-2022-20968
Related entries in the VARIoT vulnerabilities database: VAR-202212-0864

Trust: 4.5

Fetched: Dec. 27, 2022, 9:25 a.m., Published: -
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco model: link layer discovery protocol
vendor: cisco model: ip phone
vendor: cisco model: ip phone 7800
vendor: cisco model: series
db: NVD ids: CVE-2022-20968

Trust: 3.0

Fetched: Dec. 27, 2022, 9:24 a.m., Published: Dec. 27, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs

Trust: 3.0

Fetched: Dec. 27, 2022, 9:24 a.m., Published: Dec. 19, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
Related entries in the VARIoT vulnerabilities database: VAR-202011-1361, VAR-202011-1387, VAR-202011-0064

Trust: 5.0

Fetched: Dec. 27, 2022, 9:23 a.m., Published: Dec. 1, 2022, midnight
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: siemens model: simatic ipc847e
vendor: siemens model: simatic ipc477e pro
vendor: siemens model: simatic ipc427e
vendor: siemens model: simatic et 200sp open controller
vendor: siemens model: simatic drive controller family
vendor: siemens model: simatic et
vendor: siemens model: simatic itp1000
vendor: siemens model: sinumerik 840d sl
vendor: siemens model: simatic ipc547g
vendor: siemens model: simatic et 200sp open
vendor: siemens model: et 200sp open controller
vendor: siemens model: sinumerik 840d
vendor: siemens model: simatic et 200sp open controller cpu 1515sp pc2
vendor: siemens model: 840d
vendor: siemens model: simatic ipc647e
vendor: siemens model: simatic ipc477e
vendor: siemens model: simatic ipc677e
vendor: siemens model: sinumerik 828d
vendor: siemens model: simatic ipc627e
vendor: siemens model: simatic field pg m5
vendor: siemens model: simatic et 200sp
vendor: siemens model: simatic
vendor: siemens model: simatic ipc127e
db: NVD ids: CVE-2020-8698, CVE-2020-8745, CVE-2020-0590, CVE-2020-8694
Related entries in the VARIoT vulnerabilities database: VAR-202209-0759, VAR-202212-1751

Trust: 3.75

Fetched: Dec. 27, 2022, 9:23 a.m., Published: May 27, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: icloud
vendor: apple model: ipad
vendor: apple model: safari
vendor: apple model: iphone
vendor: apple model: webkit
vendor: apple model: tvos
db: NVD ids: CVE-2022-32917, CVE-2022-42856

Trust: 5.5

Fetched: Dec. 27, 2022, 9:22 a.m., Published: Dec. 10, 2022, 9:14 a.m.
Vulnerabilities: information disclosure, code execution
Affected productsExternal IDs
vendor: google model: android
vendor: samsung model: android phone
vendor: samsung model: mobile
vendor: samsung model: mobile devices
db: NVD ids: CVE-2022-20472, CVE-2022-20498, CVE-2022-20411, CVE-2022-20473
Related entries in the VARIoT vulnerabilities database: VAR-202210-0997, VAR-202210-1070

Trust: 4.5

Fetched: Dec. 27, 2022, 9:22 a.m., Published: Nov. 30, 2022, noon
Vulnerabilities: authentication bypass, code execution, buffer overflow
Affected productsExternal IDs
vendor: samsung model: galaxy
vendor: apple model: macos
vendor: apple model: iphone
vendor: google model: google chrome
vendor: google model: chrome
vendor: google model: pixel
vendor: google model: android
vendor: google model: wifi
db: NVD ids: CVE-2022-4135, CVE-2022-41091, CVE-2022-3886, CVE-2022-3885, CVE-2022-45404, CVE-2022-20463, CVE-2022-3889, CVE-2022-31685, CVE-2022-31686, CVE-2022-40303, CVE-2022-40304, CVE-2022-2209, CVE-2022-41128, CVE-2022-3887, CVE-2022-41125, CVE-2022-41073, CVE-2022-3888, CVE-2022-3890

Trust: 3.0

Fetched: Dec. 27, 2022, 9:22 a.m., Published: Dec. 10, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-4228, CVE-2021-44467, CVE-2021-26728

Trust: 4.5

Fetched: Dec. 27, 2022, 9:21 a.m., Published: Dec. 9, 2022, 3:31 p.m.
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco systems model: ip phone 7800
vendor: cisco systems model: series
vendor: cisco systems model: voice vlan
vendor: cisco systems model: wireless ip phone 8821
vendor: cisco systems model: ip phone
vendor: cisco systems model: ip phones
vendor: cisco systems model: ip phone 8821
vendor: cisco model: ip phone 7800
vendor: cisco model: series
vendor: cisco model: voice vlan
vendor: cisco model: wireless ip phone 8821
vendor: cisco model: ip phone
vendor: cisco model: ip phones
vendor: cisco model: ip phone 8821