VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202111-0656

Trust: 5.25

Fetched: Nov. 29, 2021, 2:59 p.m., Published: -
Vulnerabilities: cross-site request forgery, integer overflow, code execution...
Affected productsExternal IDs
vendor: quagga model: quagga
vendor: realtek model: rtl8195am
vendor: node.js model: node.js
db: NVD ids: CVE-2021-44219, CVE-2021-43776, CVE-2021-36799, CVE-2021-44140, CVE-2021-43574, CVE-2021-43578, CVE-2021-44094, CVE-2021-43576, CVE-2021-43616, CVE-2021-43996, CVE-2021-44026, CVE-2021-43975, CVE-2021-43669, CVE-2021-44143, CVE-2021-44025, CVE-2021-43620, CVE-2021-43778, CVE-2021-43668, CVE-2021-44036, CVE-2021-44033, CVE-2021-43777, CVE-2021-44150, CVE-2021-43611, CVE-2021-43780, CVE-2021-43617, CVE-2021-43618, CVE-2021-44147, CVE-2021-43571, CVE-2021-44093, CVE-2021-43569, CVE-2021-43997, CVE-2021-43577, CVE-2021-44225, CVE-2021-44144, CVE-2021-43979, CVE-2009-1234, CVE-2021-43667, CVE-2021-43775, CVE-2021-43582, CVE-2021-44038, CVE-2021-44079, CVE-2021-43572, CVE-2021-43573, CVE-2021-43976, CVE-2021-43610, CVE-2021-43575, CVE-2021-43581, CVE-2021-44037, CVE-2021-43977, CVE-2021-43785, CVE-2021-43570, CVE-2021-44223, CVE-2021-33056

Trust: 3.5

Fetched: Nov. 29, 2021, 2:59 p.m., Published: -
Vulnerabilities: cross-site scripting, sql injection, command injection
Affected productsExternal IDs
vendor: totolink model: a3002ru
vendor: netgear model: r9000
vendor: drobo model: drobo 5n2
vendor: buffalo model: ts5600d1206

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: -
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: lighttpd model: lighttpd

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: check point model: check point
Related entries in the VARIoT vulnerabilities database: VAR-202111-0697

Trust: 3.25

Fetched: Nov. 29, 2021, 2:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-41379

Trust: 4.5

Fetched: Nov. 29, 2021, 2:59 p.m., Published: -
Vulnerabilities: cross-site request forgery, restriction bypass, code execution...
Affected productsExternal IDs
vendor: cisco model: umbrella
vendor: cisco model: unified communications
vendor: cisco model: cisco policy suite
vendor: cisco model: webex video mesh
vendor: cisco model: anyconnect secure mobility client
vendor: cisco model: cisco anyconnect secure mobility client
vendor: cisco model: cisco prime infrastructure
vendor: cisco model: webex
vendor: cisco model: common services platform collector
vendor: cisco model: series
vendor: cisco model: cisco webex
vendor: cisco model: email security appliance
vendor: cisco model: small business series
vendor: cisco model: policy suite
vendor: cisco model: prime infrastructure
vendor: cisco model: evolved programmable network manager
vendor: cisco model: cisco email security appliance
vendor: cisco model: small business series switches
vendor: cisco model: series switches
vendor: cisco model: prime access registrar
vendor: cisco model: small business rv series routers
vendor: cisco model: access registrar
vendor: cisco model: small business
vendor: cisco model: small business rv
vendor: cisco model: catalyst
vendor: cisco model: series routers
vendor: cisco model: routers
vendor: cisco model: cisco small business
vendor: mesh model: mesh
db: NVD ids: CVE-2021-1500, CVE-2021-40124, CVE-2021-34795, CVE-2021-34739, CVE-2021-40119, CVE-2021-34741, CVE-2021-40113, CVE-2021-40120, CVE-2021-34701, CVE-2021-40128, CVE-2021-34731, CVE-2021-34773, CVE-2021-34784, CVE-2021-34774, CVE-2021-40115, CVE-2021-40126, CVE-2021-40112

Trust: 3.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 3, 2021, 2:23 p.m.
Vulnerabilities: memory corruption, cross-site scripting, use after free
Affected productsExternal IDs
db: NVD ids: CVE-2021-38504, CVE-2021-38507, CVE-2021-38505, CVE-2021-38506, CVE-2021-38503

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Sept. 3, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: series

Trust: 3.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Jan. 6, 2022, midnight
Vulnerabilities: brute force attack, default credentials
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202111-1714, VAR-202111-1713, VAR-202111-1712

Trust: 4.0

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 19, 2021, 2:01 p.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2021-43548, CVE-2021-32993, CVE-2021-43552, CVE-2021-33017

Trust: 3.75

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 10, 2021, midnight
Vulnerabilities: default password
Affected productsExternal IDs

Trust: 3.0

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 16, 2021, 11:19 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: serve model: serve

Trust: 3.25

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 25, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-0662, CVE-2021-0661, CVE-2021-0663

Trust: 3.25

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Jan. 10, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs

Trust: 3.0

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 24, 2021, 4:48 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: check point model: check point

Trust: 3.0

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 24, 2021, 4:48 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: check point model: check point

Trust: 3.0

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 25, 2021, 2:37 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: check point model: check point

Trust: 3.0

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 8, 2021, 4:13 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-38503, CVE-2021-38507, CVE-2021-38506

Trust: 4.75

Fetched: Nov. 26, 2021, 7:29 a.m., Published: Nov. 25, 2021, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: check point model: check point
vendor: vivo model: vivo
db: NVD ids: CVE-2021-0673, CVE-2021-0662, CVE-2021-0663, CVE-2021-0661