VARIoT news about IoT security

Trust: 4.0

Fetched: June 1, 2022, 8:58 a.m., Published: March 30, 2022, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2021-30116
Related entries in the VARIoT vulnerabilities database: VAR-202203-1506

Trust: 4.75

Fetched: June 1, 2022, 8:58 a.m., Published: June 2, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-22965, CVE-2022-22963

Trust: 3.5

Fetched: June 1, 2022, 8:58 a.m., Published: April 25, 2022, 6:19 a.m.
Vulnerabilities: memory corruption
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: webkit
vendor: google model: android
Related entries in the VARIoT vulnerabilities database: VAR-202205-0222

Trust: 3.25

Fetched: June 1, 2022, 8:58 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-26340

Trust: 3.5

Fetched: June 1, 2022, 8:58 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: node.js model: node.js
vendor: check point model: check point
vendor: check point model: zonealarm
db: NVD ids: CVE-2020-8251, CVE-2022-28239, CVE-2022-28251, CVE-2022-28244, CVE-2021-23972, CVE-2022-28250, CVE-2022-28252, CVE-2022-28261, CVE-2022-28267, CVE-2019-0545, CVE-2020-8252, CVE-2021-23974, CVE-2022-28260, CVE-2020-9979, CVE-2022-23267, CVE-2022-28263, CVE-2020-8201, CVE-2022-28268, CVE-2022-28837, CVE-2022-28256, CVE-2021-37851, CVE-2022-29117, CVE-2022-28257, CVE-2022-28253, CVE-2021-36613, CVE-2022-29148, CVE-2021-3254, CVE-2022-28264, CVE-2022-28240, CVE-2022-23742, CVE-2022-28258, CVE-2022-28246, CVE-2022-28248, CVE-2022-28255, CVE-2022-29145, CVE-2022-30557, CVE-2022-28259, CVE-2022-29354, CVE-2021-27351, CVE-2022-28245, CVE-2021-21341, CVE-2022-29928, CVE-2022-29927, CVE-2019-10219, CVE-2022-23743, CVE-2022-28266, CVE-2022-28243, CVE-2022-28247, CVE-2022-28265, CVE-2021-36614, CVE-2022-28269, CVE-2022-29929, CVE-2021-43066, CVE-2018-8356, CVE-2022-28241, CVE-2022-28262, CVE-2022-28818, CVE-2020-9992, CVE-2021-3611, CVE-2022-28242, CVE-2022-28838, CVE-2022-28249, CVE-2022-28254
Related entries in the VARIoT vulnerabilities database: VAR-201906-0815, VAR-202112-0566, VAR-202008-0248

Trust: 5.5

Fetched: June 1, 2022, 8:58 a.m., Published: June 15, 2022, midnight
Vulnerabilities: privilege escalation, code execution, security bypass...
Affected productsExternal IDs
vendor: qnap model: qnap qts
db: NVD ids: CVE-2021-26858, CVE-2021-34473, CVE-2018-13379, CVE-2021-26855, CVE-2021-34523, CVE-2021-44228, CVE-2021-40539, CVE-2021-26857, CVE-2019-11510, CVE-2021-31207, CVE-2020-1472, CVE-2021-27065

Trust: 3.5

Fetched: June 1, 2022, 8:58 a.m., Published: March 8, 2022, 11:30 a.m.
Vulnerabilities: buffer overflow, code execution, information disclosure...
Affected productsExternal IDs
db: NVD ids: CVE-2022-25248, CVE-2022-25247, CVE-2022-25246, CVE-2022-25251, CVE-2022-25250, CVE-2022-25249, CVE-2022-25252

Trust: 3.75

Fetched: June 1, 2022, 8:58 a.m., Published: Sept. 3, 2019, 7:33 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: chrome
Related entries in the VARIoT vulnerabilities database: VAR-202205-0858

Trust: 3.25

Fetched: June 1, 2022, 8:58 a.m., Published: June 9, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-29591

Trust: 3.5

Fetched: June 1, 2022, 8:58 a.m., Published: June 1, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: essential model: phone
vendor: delegate model: delegate
Related entries in the VARIoT vulnerabilities database: VAR-202203-0090

Trust: 4.75

Fetched: June 1, 2022, 8:58 a.m., Published: March 1, 2022, midnight
Vulnerabilities: privilege escalation, denial of service, security feature bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2022-21990, CVE-2022-24502, CVE-2022-22006, CVE-2022-24512, CVE-2022-24508, CVE-2022-24501, CVE-2022-23277, CVE-2022-24459

Trust: 4.75

Fetched: June 1, 2022, 8:58 a.m., Published: April 25, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone
vendor: google model: android
vendor: check point model: check point

Trust: 3.75

Fetched: June 1, 2022, 8:58 a.m., Published: June 1, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 3.25

Fetched: June 1, 2022, 8:58 a.m., Published: May 28, 2022, 11:22 a.m.
Vulnerabilities: sql injection, injection attack
Affected productsExternal IDs
vendor: ring model: ring
vendor: google model: home
vendor: google model: android
vendor: wireshark model: wireshark
Related entries in the VARIoT vulnerabilities database: VAR-202203-0237

Trust: 5.25

Fetched: June 1, 2022, 8:58 a.m., Published: May 3, 2022, 10 a.m.
Vulnerabilities: memory corruption, code execution
Affected productsExternal IDs
vendor: aruba model: web management portal
vendor: palo model: networks
vendor: extremenetworks model: ers3500
db: NVD ids: CVE-2022-23677, CVE-2022-29861, CVE-2022-22805, CVE-2022-29860, CVE-2022-23676

Trust: 3.5

Fetched: June 1, 2022, 8:58 a.m., Published: May 12, 2022, 10:26 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 3.75

Fetched: June 1, 2022, 8:58 a.m., Published: March 17, 2022, 3:05 p.m.
Vulnerabilities: privilege escalation, denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2022-26503, CVE-2022-26500, CVE-2022-26501

Trust: 5.0

Fetched: June 1, 2022, 8:58 a.m., Published: June 6, 2022, midnight
Vulnerabilities: use after free
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2022-1480

Trust: 5.5

Fetched: June 1, 2022, 8:58 a.m., Published: May 31, 2022, midnight
Vulnerabilities: default credentials, command injection, code injection
Affected productsExternal IDs
vendor: d-link model: router
vendor: netgear model: router
vendor: netgear model: dgn1000
vendor: google model: android
vendor: dbltek model: dbltek
db: NVD ids: CVE-2022-1388, CVE-2021-4039, CVE-2018-10823, CVE-2021-44228, CVE-2022-22954, CVE-2020-17456, CVE-2021-36356, CVE-2020-5902, CVE-2014-9118, CVE-2021-35064, CVE-2015-2051, CVE-2020-7961, CVE-2022-25075, CVE-2018-16763, CVE-2022-22947, CVE-2021-45046, CVE-2017-18368

Trust: 3.5

Fetched: June 1, 2022, 8:58 a.m., Published: May 20, 2022, 1:26 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend micro model: security
vendor: trend model: security
vendor: google model: android
vendor: google model: pixel
vendor: google model: chrome
vendor: samsung model: samsung galaxy
vendor: samsung model: mobile
vendor: samsung model: galaxy
vendor: samsung model: samsung
db: NVD ids: CVE-2021-38003, CVE-2021-1048, CVE-2021-38000, CVE-2021-37973, CVE-2021-37976