VARIoT news about IoT security

Trust: 3.75

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 15, 2021, 2:03 a.m.
Vulnerabilities: memory corruption, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-43880, CVE-2021-43217, CVE-2021-43240, CVE-2021-43890, CVE-2021-43883, CVE-2021-43233, CVE-2021-41333, CVE-2021-43215, CVE-2021-43907, CVE-2021-43893, CVE-2021-42310, CVE-2021-43899, CVE-2021-43905
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566

Trust: 5.0

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 10, 2021, 4:13 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-44228

Trust: 5.5

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Jan. 7, 2022, 7:33 p.m.
Vulnerabilities: buffer overflow, code execution, use after free
Affected productsExternal IDs
vendor: google model: chrome
vendor: google model: home
vendor: google model: google chrome
db: NVD ids: CVE-2021-4099, CVE-2021-4100, CVE-2021-4098, CVE-2021-4101, CVE-2021-4102

Trust: 4.25

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 9, 2021, 12:16 p.m.
Vulnerabilities: improper access control, cross-site scripting, information disclosure
Affected productsExternal IDs
vendor: huawei model: huawei
vendor: trend model: security

Trust: 3.75

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 13, 2021, midnight
Vulnerabilities: configuration vulnerability
Affected productsExternal IDs

Trust: 5.5

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 14, 2021, 5:21 a.m.
Vulnerabilities: denial of service, privilege escalation, code execution
Affected productsExternal IDs
vendor: broadcom model: broadcom
db: NVD ids: CVE-2020-10367, CVE-2020-10368, CVE-2020-10370, CVE-2019-15063, CVE-2020-10369
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566

Trust: 4.25

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 14, 2021, 3:14 p.m.
Vulnerabilities: code execution, command execution, injection attack
Affected productsExternal IDs
vendor: canary model: canary
vendor: radware model: appwall
vendor: serve model: serve
db: NVD ids: CVE-2021-44228
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566

Trust: 5.25

Fetched: Dec. 28, 2021, 9:20 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-4104, CVE-2021-44228
Related entries in the VARIoT vulnerabilities database: VAR-202112-2341

Trust: 5.25

Fetched: Dec. 28, 2021, 9:20 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: kcodes model: netusb
db: NVD ids: CVE-2021-45608
Related entries in the VARIoT vulnerabilities database: VAR-202112-0562, VAR-202112-0566

Trust: 3.75

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 17, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
vendor: google model: chrome
vendor: google model: chrome os
db: NVD ids: CVE-2021-45046, CVE-2021-44228

Trust: 3.25

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Oct. 20, 2021, 7:01 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: paloaltonetworks model: firewall
vendor: paloaltonetworks model: networks
vendor: paloaltonetworks model: palo alto networks
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo model: palo alto networks
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: palo alto networks

Trust: 3.75

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 16, 2021, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: hikvision model: hikvision
vendor: hikvision model: ip cameras
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566

Trust: 4.75

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Dec. 20, 2021, 12:53 p.m.
Vulnerabilities: code injection, directory traversal, denial of service...
Affected productsExternal IDs
db: NVD ids: CVE-2021-44228

Trust: 3.0

Fetched: Dec. 28, 2021, 9:20 a.m., Published: Nov. 12, 2021, 7:33 a.m.
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs

Trust: 3.75

Fetched: Dec. 27, 2021, 1:07 p.m., Published: Dec. 10, 2021, 10:56 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: icloud

Trust: 5.75

Fetched: Dec. 27, 2021, 1:07 p.m., Published: -
Vulnerabilities: authorization vulnerability, os command injection, privilege escalation...
Affected productsExternal IDs
vendor: fortigate model: fortios
db: NVD ids: CVE-2021-41019, CVE-2021-36180, CVE-2021-36192, CVE-2021-41025, CVE-2021-36195, CVE-2021-36182, CVE-2021-36176, CVE-2021-41029, CVE-2021-36174, CVE-2021-42760, CVE-2021-36178, CVE-2021-43067, CVE-2021-42758, CVE-2021-36181, CVE-2021-41024, CVE-2021-36186, CVE-2021-41027, CVE-2021-36189, CVE-2021-36194, CVE-2021-36188, CVE-2021-36185, CVE-2021-36187, CVE-2021-36191, CVE-2021-36183, CVE-2021-43063, CVE-2021-41015, CVE-2021-41013, CVE-2021-42757, CVE-2021-36168, CVE-2021-43068, CVE-2021-32603, CVE-2021-41021, CVE-2021-43204, CVE-2021-36172, CVE-2021-36167, CVE-2021-42752, CVE-2021-36175, CVE-2021-41030, CVE-2021-41028, CVE-2021-43064, CVE-2021-36169, CVE-2021-36170, CVE-2021-36190, CVE-2021-42754, CVE-2021-43071, CVE-2021-36179, CVE-2021-41014, CVE-2021-36184, CVE-2021-41017, CVE-2021-43065
Related entries in the VARIoT vulnerabilities database: VAR-202112-1782, VAR-202112-0562, VAR-202112-0566

Trust: 3.75

Fetched: Dec. 27, 2021, 1:07 p.m., Published: Dec. 12, 2021, 3:30 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-45105, CVE-2021-45046, CVE-2021-44228
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566

Trust: 3.75

Fetched: Dec. 27, 2021, 1:07 p.m., Published: Dec. 20, 2021, 3:44 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-44228

Trust: 3.75

Fetched: Dec. 27, 2021, 1:07 p.m., Published: Dec. 13, 2021, 6:06 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: cisco systems model: cisco systems
vendor: cisco systems model: series
vendor: check point model: check point
vendor: cisco model: cisco systems
vendor: cisco model: series
vendor: check point software technologies model: check point

Trust: 3.75

Fetched: Dec. 27, 2021, 1:07 p.m., Published: Jan. 10, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: symantec model: endpoint protection
vendor: symantec model: symantec endpoint protection
vendor: broadcom model: api gateway
vendor: broadcom model: broadcom
vendor: cisco model: webex meetings
vendor: cisco model: cisco webex meetings
vendor: cisco model: webex
vendor: cisco model: cisco video surveillance operations manager
vendor: cisco model: meetings server
vendor: cisco model: video surveillance operations manager
vendor: cisco model: unified communications
vendor: cisco model: cisco webex
vendor: cisco model: cisco webex meetings server
vendor: cisco model: webex meetings server
vendor: cisco model: nexus