VARIoT IoT vulnerabilities database
| VAR-202308-2593 | CVE-2023-40069 | Multiple vulnerabilities in ELECOM and Logitech network equipment |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
OS command injection vulnerability in ELECOM wireless LAN routers allows an attacker who can access the product to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WRC-F1167ACF all versions, WRC-1750GHBK all versions, WRC-1167GHBK2 all versions, WRC-1750GHBK2-I all versions, and WRC-1750GHBK-E all versions. Network equipment provided by ELECOM Co., Ltd. and Logitech Co., Ltd. contains the following multiple vulnerabilities. Reporter : Zero Zero One Co., Ltd. Hayakawa Soraya MrThe expected impact depends on each vulnerability, but it may be affected as follows. It was * A third party with access to the product logs into a specific operation screen and performs arbitrary operations. OS Command is executed - CVE-2023-32626 , CVE-2023-35991 It was * by a third party who has access to the product; telnet logged into the service - CVE-2023-38132 It was * A third party who can log in to the product may perform arbitrary actions from a specific operation screen
| VAR-202308-2592 | CVE-2023-39454 | Multiple vulnerabilities in ELECOM and Logitech network equipment |
CVSS V2: - CVSS V3: 8.8 Severity: HIGH |
Buffer overflow vulnerability exists in ELECOM wireless LAN routers, which may allow an unauthenticated attacker to execute arbitrary code. Network equipment provided by ELECOM Co., Ltd. and Logitech Co., Ltd. contains the following multiple vulnerabilities. * Unpublished features (CWE-912) - CVE-2023-32626 , CVE-2023-35991 , CVE-2023-39445 It was * Telnet Inadequate access restrictions to services (CWE-284) - CVE-2023-38132 It was * Unpublished features (CWE-912) - CVE-2023-38576 It was * buffer overflow (CWE-120) - CVE-2023-39454 It was * OS Command injection (CWE-78) - CVE-2023-39455 , CVE-2023-40072 It was * OS Command injection (CWE-78) - CVE-2023-39944 , CVE-2023-40069 This vulnerability information is JPCERT/CC Report to JPCERT/CC Coordinated with the developer. Reporter : Zero Zero One Co., Ltd. Hayakawa Soraya MrThe expected impact depends on each vulnerability, but it may be affected as follows. It was * A third party with access to the product logs into a specific operation screen and performs arbitrary operations. OS Command is executed - CVE-2023-32626 , CVE-2023-35991 It was * by a third party who has access to the product; telnet logged into the service - CVE-2023-38132 It was * A third party who can log in to the product may perform arbitrary actions from a specific operation screen. OS Command is executed - CVE-2023-38576 It was * A third party with access to the product sends a specially crafted file to a specific operation screen and executes arbitrary code. - CVE-2023-39445 It was * Arbitrary code can be executed by a third party who has access to the product - CVE-2023-39454 It was * A third party who can log in to the product sends a specially crafted request and sends an arbitrary request. OS Command is executed - CVE-2023-39455 , CVE-2023-40072 It was * A third party with access to the product may send a specially crafted request to OS Command is executed - CVE-2023-39944 , CVE-2023-40069
| VAR-202308-2594 | CVE-2023-39944 | Multiple vulnerabilities in ELECOM and Logitech network equipment |
CVSS V2: - CVSS V3: 8.8 Severity: HIGH |
OS command injection vulnerability in WRC-F1167ACF all versions, and WRC-1750GHBK all versions allows an attacker who can access the product to execute an arbitrary OS command by sending a specially crafted request. Network equipment provided by ELECOM Co., Ltd. and Logitech Co., Ltd. contains the following multiple vulnerabilities. Reporter : Zero Zero One Co., Ltd. Hayakawa Soraya MrThe expected impact depends on each vulnerability, but it may be affected as follows. It was * A third party with access to the product logs into a specific operation screen and performs arbitrary operations. OS Command is executed - CVE-2023-32626 , CVE-2023-35991 It was * by a third party who has access to the product; telnet logged into the service - CVE-2023-38132 It was * A third party who can log in to the product may perform arbitrary actions from a specific operation screen
| VAR-202308-2838 | CVE-2023-38861 | WAVLINK of WL-WN575A3 Command injection vulnerability in firmware |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
An issue in Wavlink WL_WNJ575A3 v.R75A3_V1410_220513 allows a remote attacker to execute arbitrary code via username parameter of the set_sys_adm function in adm.cgi. WAVLINK of WL-WN575A3 Firmware contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. WAVLINK WL-WNJ575A3 is a wireless network signal extender from WAVLINK, a Chinese company.
WAVLINK WL-WNJ575A3 has a command injection vulnerability, which is caused by the application's failure to properly filter special characters and commands in constructing commands
| VAR-202308-4299 | No CVE | H3C H200-EI has binary vulnerability |
CVSS V2: 7.8 CVSS V3: - Severity: HIGH |
H3C H200-EI is a gigabit home smart hub.
H3C H200-EI has a binary vulnerability that an attacker can exploit to cause a denial of service.
| VAR-202308-2598 | CVE-2023-32626 | Multiple vulnerabilities in ELECOM and Logitech network equipment |
CVSS V2: 5.8 CVSS V3: 9.8 Severity: CRITICAL |
Hidden functionality vulnerability in LAN-W300N/RS all versions, and LAN-W300N/PR5 all versions allows an unauthenticated attacker to log in to the product's certain management console and execute arbitrary OS commands. Network equipment provided by ELECOM Co., Ltd. and Logitech Co., Ltd. contains the following multiple vulnerabilities. * Unpublished features (CWE-912) - CVE-2023-32626 , CVE-2023-35991 , CVE-2023-39445 It was * Telnet Inadequate access restrictions to services (CWE-284) - CVE-2023-38132 It was * Unpublished features (CWE-912) - CVE-2023-38576 It was * buffer overflow (CWE-120) - CVE-2023-39454 It was * OS Command injection (CWE-78) - CVE-2023-39455 , CVE-2023-40072 It was * OS Command injection (CWE-78) - CVE-2023-39944 , CVE-2023-40069 This vulnerability information is JPCERT/CC Report to JPCERT/CC Coordinated with the developer. Reporter : Zero Zero One Co., Ltd. Hayakawa Soraya MrThe expected impact depends on each vulnerability, but it may be affected as follows. It was * A third party with access to the product logs into a specific operation screen and performs arbitrary operations. OS Command is executed - CVE-2023-32626 , CVE-2023-35991 It was * by a third party who has access to the product; telnet logged into the service - CVE-2023-38132 It was * A third party who can log in to the product may perform arbitrary actions from a specific operation screen. OS Command is executed - CVE-2023-38576 It was * A third party with access to the product sends a specially crafted file to a specific operation screen and executes arbitrary code. - CVE-2023-39445 It was * Arbitrary code can be executed by a third party who has access to the product - CVE-2023-39454 It was * A third party who can log in to the product sends a specially crafted request and sends an arbitrary request. OS Command is executed - CVE-2023-39455 , CVE-2023-40072 It was * A third party with access to the product may send a specially crafted request to OS Command is executed - CVE-2023-39944 , CVE-2023-40069
| VAR-202308-2599 | CVE-2023-39445 | Multiple vulnerabilities in ELECOM and Logitech network equipment |
CVSS V2: 5.8 CVSS V3: 8.8 Severity: HIGH |
Hidden functionality vulnerability in LAN-WH300N/RE all versions provided by LOGITEC CORPORATION allows an unauthenticated attacker to execute arbitrary code by sending a specially crafted file to the product's certain management console. Network equipment provided by ELECOM Co., Ltd. and Logitech Co., Ltd. contains the following multiple vulnerabilities. * Unpublished features (CWE-912) - CVE-2023-32626 , CVE-2023-35991 , CVE-2023-39445 It was * Telnet Inadequate access restrictions to services (CWE-284) - CVE-2023-38132 It was * Unpublished features (CWE-912) - CVE-2023-38576 It was * buffer overflow (CWE-120) - CVE-2023-39454 It was * OS Command injection (CWE-78) - CVE-2023-39455 , CVE-2023-40072 It was * OS Command injection (CWE-78) - CVE-2023-39944 , CVE-2023-40069 This vulnerability information is JPCERT/CC Report to JPCERT/CC Coordinated with the developer. Reporter : Zero Zero One Co., Ltd. Hayakawa Soraya MrThe expected impact depends on each vulnerability, but it may be affected as follows. It was * A third party with access to the product logs into a specific operation screen and performs arbitrary operations. OS Command is executed - CVE-2023-32626 , CVE-2023-35991 It was * by a third party who has access to the product; telnet logged into the service - CVE-2023-38132 It was * A third party who can log in to the product may perform arbitrary actions from a specific operation screen. - CVE-2023-39445 It was * Arbitrary code can be executed by a third party who has access to the product - CVE-2023-39454 It was * A third party who can log in to the product sends a specially crafted request and sends an arbitrary request. OS Command is executed - CVE-2023-39455 , CVE-2023-40072 It was * A third party with access to the product may send a specially crafted request to OS Command is executed - CVE-2023-39944 , CVE-2023-40069
| VAR-202308-2600 | CVE-2023-35991 | Multiple vulnerabilities in ELECOM and Logitech network equipment |
CVSS V2: 5.8 CVSS V3: 9.8 Severity: CRITICAL |
Hidden functionality vulnerability in LOGITEC wireless LAN routers allows an unauthenticated attacker to log in to the product's certain management console and execute arbitrary OS commands. Affected products and versions are as follows: LAN-W300N/DR all versions, LAN-WH300N/DR all versions, LAN-W300N/P all versions, LAN-WH450N/GP all versions, LAN-WH300AN/DGP all versions, LAN-WH300N/DGP all versions, and LAN-WH300ANDGPE all versions. Network equipment provided by ELECOM Co., Ltd. and Logitech Co., Ltd. contains the following multiple vulnerabilities. * Unpublished features (CWE-912) - CVE-2023-32626 , CVE-2023-35991 , CVE-2023-39445 It was * Telnet Inadequate access restrictions to services (CWE-284) - CVE-2023-38132 It was * Unpublished features (CWE-912) - CVE-2023-38576 It was * buffer overflow (CWE-120) - CVE-2023-39454 It was * OS Command injection (CWE-78) - CVE-2023-39455 , CVE-2023-40072 It was * OS Command injection (CWE-78) - CVE-2023-39944 , CVE-2023-40069 This vulnerability information is JPCERT/CC Report to JPCERT/CC Coordinated with the developer. Reporter : Zero Zero One Co., Ltd. Hayakawa Soraya MrThe expected impact depends on each vulnerability, but it may be affected as follows. It was * A third party with access to the product logs into a specific operation screen and performs arbitrary operations. OS Command is executed - CVE-2023-32626 , CVE-2023-35991 It was * by a third party who has access to the product; telnet logged into the service - CVE-2023-38132 It was * A third party who can log in to the product may perform arbitrary actions from a specific operation screen. OS Command is executed - CVE-2023-38576 It was * A third party with access to the product sends a specially crafted file to a specific operation screen and executes arbitrary code. - CVE-2023-39445 It was * Arbitrary code can be executed by a third party who has access to the product - CVE-2023-39454 It was * A third party who can log in to the product sends a specially crafted request and sends an arbitrary request. OS Command is executed - CVE-2023-39455 , CVE-2023-40072 It was * A third party with access to the product may send a specially crafted request to OS Command is executed - CVE-2023-39944 , CVE-2023-40069
| VAR-202308-3051 | CVE-2023-32748 | Mitel Networks Corporation of MiVoice Connect Fraud related to unauthorized authentication in |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
The Linux DVS server component of Mitel MiVoice Connect through 19.3 SP2 (22.24.1500.0) could allow an unauthenticated attacker with internal network access to execute arbitrary scripts due to improper access control. Mitel Networks Corporation of MiVoice Connect Exists in a fraudulent authentication vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202308-4066 | No CVE | Binary Vulnerability in H3C Technology Co., Ltd. Magic R365 (CNVD-2023-62724) |
CVSS V2: 10.0 CVSS V3: - Severity: HIGH |
Magic R365 is a full Gigabit wireless router.
H3C Technology Co., Ltd. Magic R365 has a binary vulnerability, which can be used by attackers to execute arbitrary commands.
| VAR-202308-2818 | CVE-2023-33013 | ZyXEL of NBG6604 in the firmware OS Command injection vulnerability |
CVSS V2: 9.0 CVSS V3: 8.8 Severity: HIGH |
A post-authentication command injection vulnerability in the NTP feature of Zyxel NBG6604 firmware version V1.01(ABIR.1)C0 could allow an authenticated attacker to execute some OS commands remotely by sending a crafted HTTP request. (DoS) It may be in a state. Zyxel NBG6604 is a dual-band wireless router made by China Zyxel.
There is a command injection vulnerability in Zyxel NBG6604 V1.01(ABIR.1)C0. The vulnerability stems from the failure to properly filter special characters, commands, etc. in constructing commands in the NTP function
| VAR-202308-3764 | No CVE | Binary Vulnerability in H3C R230 (CNVD-2023-62795) |
CVSS V2: 4.3 CVSS V3: - Severity: MEDIUM |
H3C R230 is a home wireless router.
There is a binary vulnerability in H3C R230, which can be exploited by attackers to cause the process to crash.
| VAR-202308-3895 | No CVE | Binary Vulnerability in H3C B6 (CNVD-2023-62796) |
CVSS V2: 4.3 CVSS V3: - Severity: MEDIUM |
H3C B6 is a Gigabit dual-band router.
There is a binary vulnerability in H3C B6, which can be exploited by attackers to cause the process to crash.
| VAR-202308-3762 | No CVE | H3C Technology Co., Ltd. Magic R365 has a binary vulnerability (CNVD-2023-68142) |
CVSS V2: 10.0 CVSS V3: - Severity: HIGH |
Magic R365 router is a wireless router produced by H3C Technology Co., Ltd. (H3C).
There is a binary vulnerability in Magic R365 of H3C Technology Co., Ltd., which can be used by attackers to gain control of the server.
| VAR-202308-2364 | CVE-2023-22356 | Initialization vulnerabilities in multiple Intel products |
CVSS V2: - CVSS V3: 4.4 Severity: MEDIUM |
Improper initialization in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable information disclosure via local access. nuc 7 enthusiast nuc7i7bnkq firmware, nuc 7 enthusiast nuc7i7bnhxg firmware, nuc kit nuc7i7dnhe Multiple Intel products, including firmware, have vulnerabilities related to initialization.Information may be obtained
| VAR-202308-2142 | CVE-2022-36372 | Buffer Error Vulnerability in Multiple Intel Products |
CVSS V2: - CVSS V3: 6.7 Severity: MEDIUM |
Improper buffer restrictions in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access. nuc 8 compute element cm8i3cb4n firmware, nuc 8 compute element cm8i5cb8n firmware, nuc 8 compute element cm8i7cb8n Multiple Intel products such as firmware contain a buffer error vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202308-2082 | CVE-2023-32285 | Vulnerabilities in multiple Intel products |
CVSS V2: - CVSS V3: 4.4 Severity: MEDIUM |
Improper access control in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable denial of service via local access. Intel NUC Kit NUC6CAYH firmware, Intel NUC Kit NUC6CAYS firmware, nuc mini pc nuc7i3bnhxf Multiple Intel products such as firmware have unspecified vulnerabilities.Service operation interruption (DoS) It may be in a state
| VAR-202308-2355 | CVE-2023-32617 | Vulnerabilities in multiple Intel products |
CVSS V2: - CVSS V3: 6.7 Severity: MEDIUM |
Improper input validation in some Intel(R) NUC Rugged Kit, Intel(R) NUC Kit and Intel(R) Compute Element BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access. nuc kit nuc7i7bnhx1 firmware, nuc 7 home nuc7i5bnkp firmware, nuc 7 home nuc7i3bnhxf Multiple Intel products such as firmware have unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202308-2304 | CVE-2023-34438 | Race Condition Vulnerability in Multiple Intel Products |
CVSS V2: - CVSS V3: 7.8 Severity: HIGH |
Race condition in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access. nuc rugged kit nuc8cchb firmware, nuc rugged kit nuc8cchbn firmware, nuc rugged kit nuc8cchkrn A race condition vulnerability exists in multiple Intel products such as firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202308-2351 | CVE-2023-34086 | Vulnerabilities in multiple Intel products |
CVSS V2: - CVSS V3: 6.7 Severity: MEDIUM |
Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access. nuc rugged kit nuc8cchb firmware, nuc rugged kit nuc8cchbn firmware, nuc rugged kit nuc8cchkrn Multiple Intel products such as firmware have unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state