VARIoT news about IoT security

Trust: 4.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 11, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: optiplex
vendor: asus model: asus
db: NVD ids: CVE-2021-28139

Trust: 5.25

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 7, 2022, 7:33 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: node.js model: node.js
Related entries in the VARIoT vulnerabilities database: VAR-202104-0768, VAR-202104-0769

Trust: 5.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 15, 2022, midnight
Vulnerabilities: path traversal
Affected productsExternal IDs
vendor: cisco model: routers
vendor: cisco model: series
vendor: palo alto networks model: palo alto networks
vendor: palo alto networks model: networks
vendor: asus model: asus
vendor: palo model: palo alto networks
vendor: palo model: networks
db: NVD ids: CVE-2021-20090, CVE-2021-20091

Trust: 5.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 15, 2022, midnight
Vulnerabilities: privilege escalation, code execution
Affected productsExternal IDs
vendor: sophos model: cyberoam
db: NVD ids: CVE-2020-25223

Trust: 3.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 15, 2022, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
vendor: netgear model: netgear router
vendor: netgear model: netgear router firmware
vendor: netgear model: gs750e
vendor: netgear model: router
vendor: netgear model: gs752tpp
vendor: netgear model: gs728tppv2
Related entries in the VARIoT vulnerabilities database: VAR-202109-0622

Trust: 5.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 15, 2022, midnight
Vulnerabilities: code execution, authentication bypass
Affected productsExternal IDs
vendor: cisco model: prime infrastructure
vendor: cisco model: firepower
vendor: cisco model: identity services engine
vendor: cisco model: device manager
vendor: cisco model: routers
vendor: cisco model: prime collaboration provisioning
vendor: cisco model: nexus
vendor: cisco model: prime collaboration
db: NVD ids: CVE-2021-34746

Trust: 3.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Aug. 17, 2021, 9:06 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 3.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 28, 2021, 2:11 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: serve model: serve
Related entries in the VARIoT vulnerabilities database: VAR-201803-1048

Trust: 3.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Oct. 14, 2021, 1:28 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: huawei model: huawei
db: NVD ids: CVE-2017-17215

Trust: 4.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 9, 2021, 2:59 p.m.
Vulnerabilities: memory allocation vulnerability
Affected productsExternal IDs
vendor: parallels model: desktop
vendor: parallels model: parallels desktop

Trust: 3.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 28, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-36260
Related entries in the VARIoT vulnerabilities database: VAR-202108-1057

Trust: 3.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 13, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: watch
vendor: apple model: ipad
vendor: apple model: ipod touch
vendor: apple model: watchos
vendor: apple model: ipad air
vendor: apple model: iphone
db: NVD ids: CVE-2021-30860, CVE-2019-3568

Trust: 4.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 13, 2021, 4:26 p.m.
Vulnerabilities: timing attack
Affected productsExternal IDs
vendor: apple model: iphone
Related entries in the VARIoT vulnerabilities database: VAR-202108-1057, VAR-202108-2172

Trust: 4.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 14, 2021, 1:28 p.m.
Vulnerabilities: code execution, integer overflow
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: ipad
vendor: apple model: ipod touch
vendor: apple model: watchos
vendor: apple model: ipad air
vendor: apple model: safari
vendor: apple model: macos
vendor: apple model: iphone
vendor: google model: android
db: NVD ids: CVE-2021-30860, CVE-2019-3568, CVE-2021-30858
Related entries in the VARIoT vulnerabilities database: VAR-202111-1788, VAR-202111-1790, VAR-202111-1789, VAR-202111-1791, VAR-202111-0778, VAR-202111-0517

Trust: 4.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Nov. 16, 2021, midnight
Vulnerabilities: denial of service, code execution, information disclosure
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel
vendor: broadcom model: broadcom
db: NVD ids: CVE-2021-1041, CVE-2021-1042, CVE-2018-25015, CVE-2021-1045, CVE-2021-1043, CVE-2021-1903, CVE-2021-30265, CVE-2021-30263, CVE-2021-30264, CVE-2021-1044

Trust: 4.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Nov. 3, 2021, 3:02 p.m.
Vulnerabilities: cross-site request forgery, request forgery, cross-site scripting...
Affected productsExternal IDs
vendor: google model: chrome
vendor: google model: google chrome
Related entries in the VARIoT vulnerabilities database: VAR-202110-1542, VAR-202110-1048, VAR-202110-1371, VAR-202110-1256

Trust: 4.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Nov. 1, 2021, 4:42 p.m.
Vulnerabilities: denial of service, information leakage
Affected productsExternal IDs
vendor: freeswitch model: freeswitch
db: NVD ids: CVE-2021-41145, CVE-2021-37624, CVE-2021-41158, CVE-2021-41105

Trust: 3.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Nov. 3, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: cisco firepower threat defense software
vendor: cisco model: firepower threat defense
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense software

Trust: 3.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Sept. 14, 2021, 10:41 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-31251

Trust: 4.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Aug. 23, 2021, 6:56 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: realtek model: realtek sdk
vendor: mesh model: mesh
db: NVD ids: CVE-2021-35395