VARIoT news about IoT security

Trust: 3.5

Fetched: Nov. 8, 2022, 9:55 a.m., Published: Aug. 18, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home
vendor: google model: android
Related entries in the VARIoT vulnerabilities database: VAR-201906-0815, VAR-202210-0198

Trust: 3.75

Fetched: Nov. 8, 2022, 9:55 a.m., Published: Oct. 12, 2022, midnight
Vulnerabilities: information disclosure, authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2018-13379, CVE-2022-40684
Related entries in the VARIoT vulnerabilities database: VAR-202211-0468, VAR-202211-1081, VAR-202207-0205

Trust: 5.25

Fetched: Nov. 8, 2022, 9:53 a.m., Published: Nov. 8, 2022, midnight
Vulnerabilities: information disclosure, denial of service, code execution
Affected productsExternal IDs
vendor: samsung model: notes
vendor: samsung model: mobile
vendor: motorola model: android
vendor: motorola model: motorola
vendor: huawei model: huawei
vendor: google model: wifi
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2022-20447, CVE-2021-1050, CVE-2022-33237, CVE-2022-20454, CVE-2022-38673, CVE-2022-25671, CVE-2021-35122, CVE-2022-20457, CVE-2022-20446, CVE-2022-20462, CVE-2022-20414, CVE-2022-20426, CVE-2022-33236, CVE-2021-35132, CVE-2021-39661, CVE-2022-38676, CVE-2022-20445, CVE-2022-38669, CVE-2022-32601, CVE-2022-20448, CVE-2021-35109, CVE-2022-2209, CVE-2022-32602, CVE-2022-2985, CVE-2022-33239, CVE-2022-20465, CVE-2022-2984, CVE-2022-39105, CVE-2021-35135, CVE-2022-38670, CVE-2022-20463, CVE-2021-35108, CVE-2022-38690, CVE-2022-20441, CVE-2022-33234, CVE-2022-20451, CVE-2022-20453, CVE-2022-20452, CVE-2022-38672, CVE-2022-20450
Related entries in the VARIoT vulnerabilities database: VAR-202208-1345, VAR-202208-1294

Trust: 5.75

Fetched: Nov. 8, 2022, 9:53 a.m., Published: Aug. 18, 2022, 6:21 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: safari
db: NVD ids: CVE-2022-32893, CVE-2022-32894

Trust: 3.0

Fetched: Nov. 8, 2022, 9:52 a.m., Published: Sept. 27, 2022, 11:22 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.75

Fetched: Nov. 8, 2022, 9:50 a.m., Published: Oct. 11, 2022, 10:39 p.m.
Vulnerabilities: default password
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202205-1571, VAR-201502-0201, VAR-201803-1769, VAR-202203-1742

Trust: 5.25

Fetched: Nov. 8, 2022, 9:49 a.m., Published: Sept. 5, 2022, 3:53 a.m.
Vulnerabilities: command execution, code execution, arbitrary command execution...
Affected productsExternal IDs
vendor: d-link model: router
vendor: palo model: networks
vendor: palo model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: firewall
db: NVD ids: CVE-2022-28958, CVE-2015-2051, CVE-2018-6530, CVE-2022-26258
Related entries in the VARIoT vulnerabilities database: VAR-202209-0006

Trust: 4.5

Fetched: Nov. 8, 2022, 9:49 a.m., Published: Nov. 1, 2022, midnight
Vulnerabilities: improper access control, default credentials
Affected productsExternal IDs
db: NVD ids: CVE-2022-38100, CVE-2022-38069, CVE-2022-3027, CVE-2022-36385, CVE-2022-38453
Related entries in the VARIoT vulnerabilities database: VAR-202210-0187, VAR-202210-0404, VAR-202210-0350, VAR-202210-0427, VAR-202210-0100, VAR-202210-0329

Trust: 5.25

Fetched: Nov. 8, 2022, 9:48 a.m., Published: Oct. 8, 2022, midnight
Vulnerabilities: information disclosure, denial of service, code execution
Affected productsExternal IDs
vendor: samsung model: notes
vendor: samsung model: mobile
vendor: motorola model: android
vendor: motorola model: motorola
vendor: huawei model: huawei
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2022-20351, CVE-2022-25660, CVE-2022-20413, CVE-2022-20439, CVE-2022-20412, CVE-2022-26471, CVE-2021-39758, CVE-2022-20415, CVE-2022-20409, CVE-2022-20431, CVE-2022-20436, CVE-2022-20440, CVE-2022-20394, CVE-2022-20425, CVE-2022-20438, CVE-2022-20410, CVE-2022-25736, CVE-2022-20419, CVE-2022-20417, CVE-2022-26472, CVE-2021-0696, CVE-2022-20418, CVE-2022-25687, CVE-2021-39624, CVE-2022-20432, CVE-2021-0699, CVE-2022-20420, CVE-2022-20416, CVE-2022-25749, CVE-2021-39673, CVE-2021-0951, CVE-2022-20437, CVE-2022-20433, CVE-2022-20435, CVE-2022-25718, CVE-2022-25748, CVE-2022-20434, CVE-2022-20430, CVE-2022-25661

Trust: 3.5

Fetched: Nov. 8, 2022, 9:47 a.m., Published: Aug. 12, 2022, 9:55 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: check point model: check point
vendor: xiaomi model: redmi
vendor: xiaomi model: miui
db: NVD ids: CVE-2020-14125

Trust: 4.5

Fetched: Nov. 8, 2022, 9:46 a.m., Published: Sept. 1, 2022, 1:08 p.m.
Vulnerabilities: integer overflow, privilege escalation
Affected productsExternal IDs
vendor: watchguard model: firebox

Trust: 3.0

Fetched: Nov. 8, 2022, 9:46 a.m., Published: Nov. 19, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: ipad
vendor: apple model: ipad air
vendor: apple model: iphone
vendor: apple model: ipod touch
vendor: apple model: macos

Trust: 4.0

Fetched: Nov. 8, 2022, 9:45 a.m., Published: Aug. 8, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: huawei model: huawei
db: NVD ids: CVE-2021-46834

Trust: 4.5

Fetched: Nov. 8, 2022, 9:45 a.m., Published: Sept. 12, 2022, 1:54 p.m.
Vulnerabilities: format string attack, string attack
Affected productsExternal IDs
vendor: cisco model: rv130w
vendor: cisco model: rv130
vendor: cisco model: small business
vendor: cisco model: rv160
vendor: cisco model: rv110w
vendor: cisco model: cisco sd-wan
vendor: cisco model: rv160w
vendor: cisco model: sd-wan
vendor: cisco model: sd-wan vmanage software
vendor: cisco model: cisco routers
vendor: cisco model: cisco small business
vendor: cisco model: sd-wan vmanage
vendor: cisco model: routers
vendor: cisco model: rv132w
vendor: cisco model: rv215w
db: NVD ids: CVE-2022-26390, CVE-2022-26393, CVE-2022-26392, CVE-2022-26394

Trust: 3.0

Fetched: Nov. 8, 2022, 9:45 a.m., Published: Oct. 13, 2022, 4:34 p.m.
Vulnerabilities: -
Affected productsExternal IDs

Trust: 3.5

Fetched: Nov. 8, 2022, 9:42 a.m., Published: Oct. 24, 2022, 5:23 p.m.
Vulnerabilities: brute force attack
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: firewall

Trust: 4.5

Fetched: Nov. 8, 2022, 9:40 a.m., Published: Nov. 8, 2022, midnight
Vulnerabilities: memory corruption, code execution, buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2022-23930, CVE-2021-39299, CVE-2022-31640, CVE-2022-31644, CVE-2022-31641, CVE-2022-31645, CVE-2022-31646

Trust: 4.75

Fetched: Nov. 8, 2022, 9:40 a.m., Published: Aug. 17, 2022, 11:18 a.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: snort model: snort
vendor: realtek model: realtek sdk
db: NVD ids: CVE-2022-27255

Trust: 5.75

Fetched: Nov. 8, 2022, 9:39 a.m., Published: Sept. 8, 2022, 5:55 p.m.
Vulnerabilities: format string vulnerability
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo model: firewall
vendor: baxter model: wireless battery module
vendor: baxter model: spectrum infusion system
vendor: palo alto networks model: networks
vendor: palo alto networks model: firewall
db: NVD ids: CVE-2022-26393, CVE-2022-26390, CVE-2022-26392, CVE-2022-26394

Trust: 4.25

Fetched: Nov. 8, 2022, 9:38 a.m., Published: Nov. 8, 2022, midnight
Vulnerabilities: directory traversal, improper access control, code execution...
Affected productsExternal IDs
vendor: codesys model: codesys
vendor: codesys model: linux
vendor: codesys model: control
vendor: codesys model: web server
db: NVD ids: CVE-2022-3183, CVE-2022-3185, CVE-2022-3184, CVE-2022-3187, CVE-2022-3189, CVE-2022-3188, CVE-2022-3186