VARIoT IoT vulnerabilities database
| VAR-202305-2841 | CVE-2023-1150 | plural WAGO Product resource exhaustion vulnerability |
CVSS V2: - CVSS V3: 7.5 Severity: HIGH |
Uncontrolled resource consumption in Series WAGO 750-3x/-8x products may allow an unauthenticated remote attacker to DoS the MODBUS server with specially crafted packets. 750-363/040-000 firmware, 750-362/040-000 firmware, 750-362/000-001 firmware etc. WAGO The product contains a resource exhaustion vulnerability.Service operation interruption (DoS) It may be in a state
| VAR-202305-2975 | No CVE | Binary Vulnerability in TOTOLINK T8 (CNVD-2023-30416) |
CVSS V2: 8.3 CVSS V3: - Severity: HIGH |
TOTOLINK T8 is a wireless dual-band router.
A binary vulnerability exists in TOTOLINK T8 that could be exploited by an attacker to cause arbitrary code execution.
| VAR-202305-2373 | CVE-2023-2923 | Shenzhen Tenda Technology Co.,Ltd. of AC6 Out-of-bounds write vulnerability in firmware |
CVSS V2: 6.5 CVSS V3: 6.3 Severity: MEDIUM |
A vulnerability classified as critical was found in Tenda AC6 US_AC6V1.0BR_V15.03.05.19. Affected by this vulnerability is the function fromDhcpListClient. The manipulation leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-230077 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. Shenzhen Tenda Technology Co.,Ltd. of AC6 An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The Tenda AC6 is a dual-band wireless router from Tenda that supports both 2.4GHz and 5GHz bands, with a maximum transmission rate of 1167Mbps. An attacker could exploit this vulnerability to cause a denial of service
| VAR-202305-2449 | CVE-2023-21516 | Samsung's Galaxy Store Cross-site scripting vulnerability in |
CVSS V2: - CVSS V3: 9.6 Severity: CRITICAL |
XSS vulnerability from InstantPlay in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store. Samsung's Galaxy Store Exists in a cross-site scripting vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.The specific flaw exists within the McsWebViewActivity class. The issue results from a permissive list of allowed inputs. An attacker can leverage this vulnerability to execute code in the context of the current user
| VAR-202305-2534 | CVE-2023-21514 | Samsung's Galaxy Store Input verification vulnerability in |
CVSS V2: - CVSS V3: 8.8 Severity: HIGH |
Improper scheme validation from InstantPlay Deeplink in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store. Samsung's Galaxy Store There is an input validation vulnerability in.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S22 smartphones. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.The specific flaw exists within the InstantPlaysDeepLink class. The issue results from a permissive list of allowed inputs. An attacker can leverage this vulnerability to execute code in the context of the current user
| VAR-202305-2448 | CVE-2023-21515 | Samsung's Galaxy Store Vulnerability in |
CVSS V2: - CVSS V3: 8.8 Severity: HIGH |
InstantPlay which included vulnerable script which could execute javascript in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store. Samsung's Galaxy Store Exists in unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S22 smartphones. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.The specific flaw exists within the McsWebViewActivity class. The issue results from a permissive list of allowed inputs. An attacker can leverage this vulnerability to execute code in the context of the current user
| VAR-202305-2187 | CVE-2023-25599 | Mitel Networks Corporation of MiVoice Connect Cross-site scripting vulnerability in |
CVSS V2: - CVSS V3: 7.4 Severity: HIGH |
A vulnerability in the conferencing component of Mitel MiVoice Connect through 19.3 SP2, 22.24.1500.0 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation for the test_presenter.php page. A successful exploit could allow an attacker to execute arbitrary scripts. Mitel Networks Corporation of MiVoice Connect Exists in a cross-site scripting vulnerability.Information may be obtained
| VAR-202305-2239 | CVE-2023-31460 | Mitel Networks Corporation of MiVoice Connect Command injection vulnerability in |
CVSS V2: - CVSS V3: 7.2 Severity: HIGH |
A vulnerability in the Connect Mobility Router component of MiVoice Connect versions 9.6.2208.101 and earlier could allow an authenticated attacker with internal network access to conduct a command injection attack due to insufficient restriction on URL parameters. Mitel Networks Corporation of MiVoice Connect Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202305-2335 | CVE-2023-31457 | Mitel Networks Corporation of MiVoice Connect Vulnerability in |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
A vulnerability in the Headquarters server component of Mitel MiVoice Connect versions 19.3 SP2 (22.24.1500.0) and earlier could allow an unauthenticated attacker with internal network access to execute arbitrary scripts due to improper access control. Mitel Networks Corporation of MiVoice Connect Exists in unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202305-2304 | CVE-2022-4815 | Hitachi Vantara's Vantara Pentaho and Pentaho Business Analytics Untrusted Data Deserialization Vulnerability in |
CVSS V2: - CVSS V3: 8.8 Severity: HIGH |
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.3, including 8.3.x deserialize untrusted JSON data without constraining the parser to approved classes and methods. (DoS) It may be in a state
| VAR-202305-2429 | CVE-2023-25598 | Mitel Networks Corporation of MiVoice Connect Cross-site scripting vulnerability in |
CVSS V2: - CVSS V3: 6.1 Severity: MEDIUM |
A vulnerability in the conferencing component of Mitel MiVoice Connect through 19.3 SP2 and 20.x, 21.x, and 22.x through 22.24.1500.0 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation for the home.php page. A successful exploit could allow an attacker to execute arbitrary scripts. Mitel Networks Corporation of MiVoice Connect Exists in a cross-site scripting vulnerability.Information may be obtained and information may be tampered with
| VAR-202305-2121 | CVE-2023-33009 | plural ZyXEL Classic buffer overflow vulnerability in the product |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
A buffer overflow vulnerability in the notification function in Zyxel ATP series firmware versions 4.60 through 5.36 Patch 1, USG FLEX series firmware versions 4.60 through 5.36 Patch 1, USG FLEX 50(W) firmware versions 4.60 through 5.36 Patch 1, USG20(W)-VPN firmware versions 4.60 through 5.36 Patch 1, VPN series firmware versions 4.60 through 5.36 Patch 1, ZyWALL/USG series firmware versions 4.60 through 4.73 Patch 1, could allow an unauthenticated attacker to cause denial-of-service (DoS) conditions and even a remote code execution on an affected device. ATP100 firmware, ATP200 firmware, ATP500 firmware etc. ZyXEL The product contains a classic buffer overflow vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202305-2357 | CVE-2023-31459 | Mitel Networks Corporation of MiVoice Connect Vulnerability related to password management function in |
CVSS V2: - CVSS V3: 8.8 Severity: HIGH |
A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect versions 9.6.2208.101 and earlier could allow an unauthenticated attacker with internal network access to authenticate with administrative privileges, because the initial installation does not enforce a password change. A successful exploit could allow an attacker to make arbitrary configuration changes and execute arbitrary commands. Mitel Networks Corporation of MiVoice Connect Contains a vulnerability related to the password management function.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202305-2285 | CVE-2023-33010 | plural ZyXEL Classic buffer overflow vulnerability in the product |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
A buffer overflow vulnerability in the ID processing function in Zyxel ATP series firmware versions 4.32 through 5.36 Patch 1, USG FLEX series firmware versions 4.50 through 5.36 Patch 1, USG FLEX 50(W) firmware versions 4.25 through 5.36 Patch 1, USG20(W)-VPN firmware versions 4.25 through 5.36 Patch 1, VPN series firmware versions 4.30 through 5.36 Patch 1, ZyWALL/USG series firmware versions 4.25 through 4.73 Patch 1, could allow an unauthenticated attacker to cause denial-of-service (DoS) conditions and even a remote code execution on an affected device. ATP100 firmware, ATP200 firmware, ATP500 firmware etc. ZyXEL The product contains a classic buffer overflow vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202305-2206 | CVE-2023-1158 | Hitachi Vantara's Vantara Pentaho and Pentaho Business Analytics Fraud related to unauthorized authentication in |
CVSS V2: - CVSS V3: 4.3 Severity: MEDIUM |
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.3, including 8.3.x expose dashboard prompts to users who are not part of the authorization list. Hitachi Vantara's Vantara Pentaho and Pentaho Business Analytics Exists in a fraudulent authentication vulnerability.Information may be obtained
| VAR-202305-2188 | CVE-2023-31458 | Mitel Networks Corporation of MiVoice Connect Vulnerability in |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
A vulnerability in the Edge Gateway component of Mitel MiVoice Connect versions 19.3 SP2 (22.24.1500.0) and earlier could allow an unauthenticated attacker with internal network access to authenticate with administrative privileges, because initial installation does not enforce a password change. A successful exploit could allow an attacker to make arbitrary configuration changes and execute arbitrary commands. Mitel Networks Corporation of MiVoice Connect Exists in unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202305-2256 | CVE-2023-31814 | D-Link Systems, Inc. of DIR-300 Firmware vulnerabilities |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
D-Link DIR-300 firmware <=REVA1.06 and <=REVB2.06 is vulnerable to File inclusion via /model/__lang_msg.php. D-Link Systems, Inc. of DIR-300 There are unspecified vulnerabilities in the firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
| VAR-202305-2397 | CVE-2023-31741 | Linksys E2000 Command Injection Vulnerability |
CVSS V2: 8.3 CVSS V3: 7.2 Severity: HIGH |
There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, they can inject commands into the post request parameters wl_ssid, wl_ant, wl_rate, WL_atten_ctl, ttcp_num, ttcp_size in the httpd s Start_EPI() function, thereby gaining shell privileges. Cisco Systems (Linksys) of e2000 Firmware contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. Linksys E2000 is a wireless router from Linksys, an American company. No detailed vulnerability details are currently available
| VAR-202305-2432 | CVE-2023-31742 | Cisco Systems (Linksys) of Linksys WRT54GL Command injection vulnerability in firmware |
CVSS V2: - CVSS V3: 7.2 Severity: HIGH |
There is a command injection vulnerability in the Linksys WRT54GL router with firmware version 4.30.18.006. If an attacker gains web management privileges, they can inject commands into the post request parameters wl_ant, wl_rate, WL_atten_ctl, ttcp_num, ttcp_size in the httpd s Start_EPI() function, thereby gaining shell privileges. (DoS) It may be in a state
| VAR-202305-2074 | CVE-2022-46680 | Schneider Electric Made PowerLogic Vulnerability of Plain Text Transmission of Sensitive Information in |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
A CWE-319: Cleartext transmission of sensitive information vulnerability exists that could
cause disclosure of sensitive information, denial of service, or modification of data if an attacker
is able to intercept network traffic. Schneider Electric Provided by the company PowerLogic The product contains the following vulnerabilities: * Plain text transmission of important information (CWE-319) - CVE-2022-46680If the vulnerability is exploited, it may be affected as follows. It was * Sensitive information may be stolen by a remote third party, or service may be disrupted ( DoS ) or have data tampered with