VARIoT news about IoT security

Trust: 6.0

Fetched: March 14, 2023, 9:21 a.m., Published: March 13, 2023, 5:50 p.m.
Vulnerabilities: code execution, denial of service, buffer overflow...
Affected productsExternal IDs
vendor: lenovo model: system
db: NVD ids: CVE-2023-1017, CVE-2023-1018

Trust: 3.75

Fetched: March 14, 2023, 9:20 a.m., Published: Feb. 14, 2023, midnight
Vulnerabilities: default credentials, default password
Affected productsExternal IDs

Trust: 4.0

Fetched: March 14, 2023, 9:20 a.m., Published: March 8, 2023, 3:32 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: series routers
vendor: cisco model: ios xr software
vendor: cisco model: routers
vendor: cisco model: series
vendor: cisco model: ios xr
vendor: cisco model: cisco ios xr
vendor: cisco model: cisco ios
Related entries in the VARIoT vulnerabilities database: VAR-202302-1899, VAR-202302-1897, VAR-202302-1896, VAR-202302-1898

Trust: 5.0

Fetched: March 14, 2023, 9:19 a.m., Published: March 9, 2023, 10:51 a.m.
Vulnerabilities: code execution, default credentials, integer overflow...
Affected productsExternal IDs
db: NVD ids: CVE-2022-45138, CVE-2022-45139, CVE-2022-45137, CVE-2022-45140

Trust: 5.25

Fetched: March 14, 2023, 9:19 a.m., Published: Feb. 15, 2023, 3:53 p.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: cisco model: nexus

Trust: 5.0

Fetched: March 14, 2023, 9:18 a.m., Published: March 10, 2023, 6:36 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-0354, CVE-2023-0348

Trust: 3.75

Fetched: March 14, 2023, 9:18 a.m., Published: March 13, 2023, 5:30 p.m.
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2023-0354, CVE-2023-0348, CVE-2023-0351

Trust: 4.0

Fetched: March 14, 2023, 9:14 a.m., Published: Jan. 14, 2023, midnight
Vulnerabilities: code execution, code injection, data injection...
Affected productsExternal IDs
vendor: google model: home
vendor: google model: android
vendor: google model: google home
vendor: trend model: security
vendor: belkin model: router
vendor: tp-link model: routers
vendor: tp-link model: gateway
vendor: symantec model: system works

Trust: 4.25

Fetched: March 14, 2023, 9:14 a.m., Published: Jan. 14, 2050, midnight
Vulnerabilities: weak password
Affected productsExternal IDs
vendor: century model: router
vendor: apple model: watch

Trust: 4.0

Fetched: March 12, 2023, 9:22 a.m., Published: March 8, 2023, 2:29 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: series
vendor: cisco model: ios xr software
vendor: cisco model: cisco ios xr
vendor: cisco model: ios xr
vendor: cisco model: cisco ios
vendor: cisco model: series routers
vendor: cisco model: routers

Trust: 3.0

Fetched: March 12, 2023, 9:22 a.m., Published: March 2, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: hub model: hub

Trust: 3.0

Fetched: March 12, 2023, 9:21 a.m., Published: March 3, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: hub model: hub

Trust: 3.0

Fetched: March 12, 2023, 9:21 a.m., Published: March 1, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: hub model: hub

Trust: 3.75

Fetched: March 12, 2023, 9:20 a.m., Published: March 7, 2023, 8:54 a.m.
Vulnerabilities: heap corruption, code execution, memory corruption
Affected productsExternal IDs
db: NVD ids: CVE-2023-21716

Trust: 5.0

Fetched: March 12, 2023, 9:19 a.m., Published: Feb. 16, 2023, 8:42 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: draytek model: vigor
db: NVD ids: CVE-2022-46169
Related entries in the VARIoT vulnerabilities database: VAR-202302-2045, VAR-202302-2240

Trust: 4.75

Fetched: March 12, 2023, 9:18 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: macos
db: NVD ids: CVE-2023-23530, CVE-2023-23531
Related entries in the VARIoT vulnerabilities database: VAR-202102-0898, VAR-201912-0828, VAR-201912-0830

Trust: 3.75

Fetched: March 12, 2023, 9:16 a.m., Published: March 12, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: sonicwall model: sma 100
vendor: sonicwall model: secure mobile access
db: NVD ids: CVE-2021-20016, CVE-2019-7481, CVE-2019-7483, CVE-2021-20028

Trust: 4.75

Fetched: March 12, 2023, 9:16 a.m., Published: March 11, 2023, 7:19 a.m.
Vulnerabilities: privilege escalation, code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2023-20906, CVE-2023-20963, CVE-2023-20911, CVE-2023-20956, CVE-2023-20958, CVE-2023-20964, CVE-2023-20947, CVE-2023-20917, CVE-2023-20951, CVE-2023-20954

Trust: 5.25

Fetched: March 12, 2023, 9:14 a.m., Published: March 8, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: android

Trust: 4.5

Fetched: March 12, 2023, 9:14 a.m., Published: March 9, 2023, 4:56 p.m.
Vulnerabilities: cross-site scripting, sql injection, default credentials
Affected productsExternal IDs
vendor: zoom model: client