VARIoT news about IoT security

Trust: 4.75

Fetched: Nov. 20, 2022, 9:30 a.m., Published: Nov. 16, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: cisco model: catalyst 4000
vendor: cisco model: cisco catalyst 4000 series
vendor: cisco model: ios xe software
vendor: cisco model: tftp server
vendor: cisco model: catalyst
vendor: cisco model: router
vendor: cisco model: catalyst 4000 series
vendor: cisco model: cisco ios
vendor: cisco model: series switches
vendor: cisco model: cisco ios xe
vendor: cisco model: series
vendor: cisco model: 1100
vendor: cisco model: ios xe
vendor: apple model: mac os
vendor: apple model: macos
vendor: apple model: ipad
vendor: apple model: webkit
vendor: apple model: mac os x
vendor: apple model: safari
vendor: apple model: ipod touch
vendor: apple model: watch
vendor: apple model: iphone
db: NVD ids: CVE-2022-32894, CVE-2019-8662, CVE-2019-8647, CVE-2022-3289, CVE-2019-8646, CVE-2022-27492, CVE-2022-32893, CVE-2022-32917, CVE-2019-8641, CVE-2019-8624, CVE-2019-8660
Related entries in the VARIoT vulnerabilities database: VAR-202211-0550

Trust: 4.0

Fetched: Nov. 20, 2022, 9:29 a.m., Published: Nov. 11, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: firepower
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower management center
vendor: cisco model: firepower threat defense
db: NVD ids: CVE-2022-20927
Related entries in the VARIoT vulnerabilities database: VAR-202211-1118, VAR-202211-1139

Trust: 4.75

Fetched: Nov. 20, 2022, 9:29 a.m., Published: Nov. 19, 2022, 4:58 p.m.
Vulnerabilities: cross-site scripting, cross-site request forgery, request forgery...
Affected productsExternal IDs
db: NVD ids: CVE-2022-41800, CVE-2022-41622
Related entries in the VARIoT vulnerabilities database: VAR-202211-1118, VAR-202211-1139

Trust: 5.0

Fetched: Nov. 20, 2022, 9:28 a.m., Published: Nov. 17, 2022, 10:39 a.m.
Vulnerabilities: request forgery, cross-site request forgery, security bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2022-41800, CVE-2022-41622
Related entries in the VARIoT vulnerabilities database: VAR-202211-1118, VAR-202211-1139

Trust: 5.0

Fetched: Nov. 20, 2022, 9:27 a.m., Published: Nov. 19, 2022, midnight
Vulnerabilities: request forgery, cross-site request forgery, security bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2022-41800, CVE-2022-41622

Trust: 3.5

Fetched: Nov. 20, 2022, 9:26 a.m., Published: Nov. 15, 2022, 1:51 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2022-20465
Related entries in the VARIoT vulnerabilities database: VAR-202211-1118, VAR-202211-1139

Trust: 4.0

Fetched: Nov. 20, 2022, 9:26 a.m., Published: Nov. 3, 2022, midnight
Vulnerabilities: request forgery, cross-site request forgery, security bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2022-41800, CVE-2022-41622
Related entries in the VARIoT vulnerabilities database: VAR-202204-1874

Trust: 4.5

Fetched: Nov. 20, 2022, 9:24 a.m., Published: Sept. 13, 2022, 2:13 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: filezilla model: server
vendor: mitel model: mivoice connect
db: NVD ids: CVE-2022-29499
Related entries in the VARIoT vulnerabilities database: VAR-202209-1859

Trust: 3.5

Fetched: Nov. 20, 2022, 9:24 a.m., Published: Oct. 21, 2022, 8:39 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: nx-os software
vendor: cisco model: cisco ios xr
vendor: cisco model: ios xe software
vendor: cisco model: catalyst 4500e series switches
vendor: cisco model: small business switches
vendor: cisco model: catalyst
vendor: cisco model: nx-os
vendor: cisco model: access points
vendor: cisco model: cisco small business switches
vendor: cisco model: ios xr software
vendor: cisco model: cisco ios
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco small business
vendor: cisco model: voice vlan
vendor: cisco model: small business
vendor: cisco model: ios xe
vendor: cisco model: series
vendor: cisco model: routers
vendor: cisco model: ios software
vendor: cisco model: cisco nx-os
vendor: cisco model: series switches
vendor: cisco model: ios xr
db: NVD ids: CVE-2021-27854, CVE-2021-27853, CVE-2021-27861, CVE-2021-27862
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566

Trust: 3.0

Fetched: Nov. 20, 2022, 9:23 a.m., Published: Oct. 19, 2022, 9:04 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-44228
Related entries in the VARIoT vulnerabilities database: VAR-202211-1118, VAR-202211-1139

Trust: 4.75

Fetched: Nov. 20, 2022, 9:23 a.m., Published: Nov. 16, 2022, 3:02 p.m.
Vulnerabilities: privilege escalation, cross-site request forgery, command injection...
Affected productsExternal IDs
db: NVD ids: CVE-2022-41800, CVE-2022-41622

Trust: 3.0

Fetched: Nov. 20, 2022, 9:22 a.m., Published: May 20, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202210-0198

Trust: 4.75

Fetched: Nov. 20, 2022, 9:20 a.m., Published: Oct. 11, 2022, 11:27 a.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
vendor: fortigate model: fortios
db: NVD ids: CVE-2022-40684
Related entries in the VARIoT vulnerabilities database: VAR-202210-0848

Trust: 4.25

Fetched: Nov. 20, 2022, 9:20 a.m., Published: -
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2022-22239
Related entries in the VARIoT vulnerabilities database: VAR-202210-1371

Trust: 5.0

Fetched: Nov. 20, 2022, 9:19 a.m., Published: Nov. 20, 2022, midnight
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: cisco model: identity services engine
db: NVD ids: CVE-2022-20822

Trust: 3.75

Fetched: Nov. 20, 2022, 9:19 a.m., Published: Oct. 19, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-42889, CVE-2022-33980

Trust: 3.5

Fetched: Nov. 20, 2022, 9:18 a.m., Published: Nov. 14, 2022, 10:29 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
vendor: google model: home
vendor: google model: pixel
db: NVD ids: CVE-2022-20465

Trust: 4.5

Fetched: Nov. 20, 2022, 9:17 a.m., Published: Oct. 3, 2022, 9:19 a.m.
Vulnerabilities: integer overflow, code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2022-36934, CVE-2022-27492

Trust: 3.25

Fetched: Nov. 20, 2022, 9:16 a.m., Published: June 20, 2004, midnight
Vulnerabilities: privilege escalation, code execution
Affected productsExternal IDs
vendor: google model: chrome
vendor: google model: wifi
vendor: apple model: macos
vendor: canonical model: ubuntu
vendor: asus model: asus
vendor: broadcom model: wifi driver
vendor: broadcom model: linux
vendor: lenovo model: system
vendor: lenovo model: bios
vendor: lenovo model: desktop
vendor: lenovo model: yoga
vendor: lenovo model: updates
vendor: lenovo model: edge

Trust: 3.25

Fetched: Nov. 20, 2022, 9:15 a.m., Published: Nov. 16, 2022, 4:30 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: check point model: check point