VARIoT news about IoT security

Trust: 3.5

Fetched: Nov. 16, 2021, 1:27 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: ge healthcare model: centricity pacs server
vendor: ge healthcare model: discovery xr656
vendor: ge healthcare model: centricity dms
vendor: ge healthcare model: optima mr360
vendor: ge healthcare model: infinia hawkeye 4
vendor: ge healthcare model: centricity pacs
vendor: ge healthcare model: discovery vh
vendor: gehealthcare model: centricity pacs server
vendor: gehealthcare model: discovery xr656
vendor: gehealthcare model: centricity dms
vendor: gehealthcare model: optima mr360
vendor: gehealthcare model: infinia hawkeye 4
vendor: gehealthcare model: centricity pacs
vendor: gehealthcare model: discovery vh
db: NVD ids: CVE-2012-6660, CVE-2014-7232, CVE-2003-1603, CVE-2009-5143, CVE-2012-6693, CVE-2010-5306, CVE-2007-6757, CVE-2017-14006, CVE-2013-7442, CVE-2002-2446, CVE-2004-2777, CVE-2017-14008, CVE-2014-7233, CVE-2010-5310, CVE-2017-14004, CVE-2012-6695, CVE-2013-7404, CVE-2012-6694, CVE-2017-14002, CVE-2010-5307, CVE-2010-5309, CVE-2001-1594, CVE-2011-5322
db: ICS CERT ids: ICSMA-18-037-02

Trust: 3.5

Fetched: Nov. 16, 2021, 1:27 p.m., Published: -
Vulnerabilities: default password, default credentials
Affected productsExternal IDs
db: ICS CERT ids: ICSMA-18-037-02

Trust: 3.5

Fetched: Nov. 16, 2021, 1:27 p.m., Published: -
Vulnerabilities: sql injection, weak password
Affected productsExternal IDs
vendor: cisco model: guard
vendor: cisco model: umbrella
vendor: cisco model: routers
Related entries in the VARIoT vulnerabilities database: VAR-202109-0245

Trust: 5.25

Fetched: Nov. 16, 2021, 1:27 p.m., Published: -
Vulnerabilities: memory corruption, denial of service
Affected productsExternal IDs
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software
vendor: cisco model: ios xe
vendor: cisco model: series
vendor: cisco model: cisco systems
vendor: cisco systems model: cisco ios xe
vendor: cisco systems model: cisco ios
vendor: cisco systems model: ios xe software
vendor: cisco systems model: ios xe
vendor: cisco systems model: series
vendor: cisco systems model: cisco systems
db: NVD ids: CVE-2021-1619
Related entries in the VARIoT vulnerabilities database: VAR-202108-0848

Trust: 5.5

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Jan. 3, 2022, midnight
Vulnerabilities: buffer overflow, improper validation, denial of service
Affected productsExternal IDs
vendor: cisco systems model: rv110w_wireless-n_vpn_firewall
vendor: cisco systems model: rv215w
vendor: cisco systems model: application_extension_platform
vendor: cisco systems model: cisco small business
vendor: cisco systems model: routers
vendor: cisco systems model: rv130
vendor: cisco systems model: rv215w_wireless-n_vpn_router_firmware
vendor: cisco systems model: small business
vendor: cisco systems model: cisco systems
vendor: cisco systems model: rv110w_wireless-n_vpn_firewall_firmware
vendor: cisco systems model: rv110w
vendor: cisco systems model: rv215w_wireless-n_vpn_router
vendor: cisco systems model: rv130w_wireless-n_multifunction_vpn_router_firmware
vendor: cisco systems model: rv130_vpn_router_firmware
vendor: cisco systems model: rv130w_wireless-n_multifunction_vpn_router
vendor: cisco systems model: rv130w
vendor: cisco model: rv110w_wireless-n_vpn_firewall
vendor: cisco model: rv215w
vendor: cisco model: application_extension_platform
vendor: cisco model: cisco small business
vendor: cisco model: routers
vendor: cisco model: rv130
vendor: cisco model: rv215w_wireless-n_vpn_router_firmware
vendor: cisco model: small business
vendor: cisco model: cisco systems
vendor: cisco model: rv110w_wireless-n_vpn_firewall_firmware
vendor: cisco model: rv110w
vendor: cisco model: rv215w_wireless-n_vpn_router
vendor: cisco model: rv130w_wireless-n_multifunction_vpn_router_firmware
vendor: cisco model: rv130_vpn_router_firmware
vendor: cisco model: rv130w_wireless-n_multifunction_vpn_router
vendor: cisco model: rv130w
db: NVD ids: CVE-2021-34730

Trust: 5.75

Fetched: Nov. 16, 2021, 1:27 p.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2021-37976, CVE-2021-37975, cve-2021-40449, CVE-2021-37974
Related entries in the VARIoT vulnerabilities database: VAR-202107-0029

Trust: 5.25

Fetched: Nov. 16, 2021, 1:27 p.m., Published: -
Vulnerabilities: memory overwrite, buffer overflow, code execution...
Affected productsExternal IDs
vendor: samsung model: mobile
vendor: samsung model: mobile devices n
vendor: samsung model: mobile devices
vendor: samsung model: samsung mobile
vendor: samsung model: mobile devices p
vendor: samsung model: samsung
vendor: samsung model: exynos
vendor: google model: android
vendor: google model: wifi
db: NVD ids: CVE-2019-1010298, CVE-2020-0080, CVE-2019-20607, CVE-2019-20622, CVE-2019-20567, CVE-2020-0229, CVE-2019-1010297, CVE-2020-0278, CVE-2019-1010200, CVE-2020-0002, CVE-2019-20586, CVE-2019-20587, CVE-2019-20583, CVE-2020-0267, CVE-2020-0225, CVE-2020-0071, CVE-2020-0117, CVE-2020-0070, CVE-2019-1010260, CVE-2020-0072, CVE-2019-20588, CVE-2019-20585, CVE-2020-0253, CVE-2020-0339, CVE-2019-20610, CVE-2020-0240, CVE-2020-0099, CVE-2020-0252, CVE-2019-1010296, CVE-2019-20537, CVE-2019-20584, CVE-2020-0123, CVE-2020-0245, CVE-2019-20451, CVE-2019-20621, CVE-2019-20605, CVE-2020-0224, CVE-2019-20545, CVE-2019-20893, CVE-2009-1234, CVE-2019-25029, CVE-2020-0103, CVE-2020-0073, CVE-2019-20478, CVE-2019-20467, CVE-2019-20589, CVE-2019-20427, CVE-2019-20611, CVE-2020-0283, CVE-2020-0032, CVE-2019-25024
db: SAMSUNG ids: SVE-2019-15283, SVE-2019-14651, SVE-2019-14867, SVE-2019-14847, SVE-2019-14851, SVE-2019-13963, SVE-2019-13910, SVE-2019-14126, SVE-2019-14892, SVE-2018-13188, SVE-2019-14666, SVE-2019-14864, SVE-2019-14993, SVE-2018-13187, SVE-2019-14891, SVE-2019-14850, SVE-2019-14071
Related entries in the VARIoT vulnerabilities database: VAR-202110-1687

Trust: 3.75

Fetched: Nov. 16, 2021, 1:27 p.m., Published: -
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2021-37974, CVE-2021-37975, cve-2021-40449, CVE-2021-40449, CVE-2021-37976

Trust: 5.25

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Jan. 8, 2022, midnight
Vulnerabilities: code execution, buffer overflow
Affected productsExternal IDs
vendor: palo model: palo alto networks
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo alto networks model: palo alto networks
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
db: NVD ids: CVE-2021-3064

Trust: 4.5

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Jan. 1, 2022, midnight
Vulnerabilities: cross-site scripting, script execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-22812, CVE-2021-22814, CVE-2021-22815, CVE-2021-22813, CVE-2021-22810, CVE-2021-22811

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Jan. 7, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 3.25

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Jan. 4, 2022, 4:29 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: foobot model: foobot
vendor: belkin model: wemo insight smart plug
vendor: belkin model: wemo light switch
vendor: google model: google home
vendor: google model: android
vendor: google model: wifi
vendor: google model: home
vendor: mesh model: mesh
vendor: amazon model: ring video doorbell
vendor: ring model: video doorbell
vendor: ring model: ring video doorbell
vendor: ring model: ring
vendor: nest model: learning thermostat
vendor: netgear model: orbi

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Nov. 9, 2021, 10:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Jan. 7, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Jan. 10, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Nov. 1, 2021, midnight
Vulnerabilities: cross-site scripting
Affected productsExternal IDs

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Nov. 9, 2021, 11:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Nov. 9, 2021, 10:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 3.0

Fetched: Nov. 16, 2021, 1:27 p.m., Published: Nov. 9, 2021, 11:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: nucleus