VARIoT IoT vulnerabilities database

Affected products: vendor, model and version
CWE format is 'CWE-number'. Threat type can be: remote or local
Look up free text in title and description

VAR-202305-2841 CVE-2023-1150 plural  WAGO  Product resource exhaustion vulnerability CVSS V2: -
CVSS V3: 7.5
Severity: HIGH
Uncontrolled resource consumption in Series WAGO 750-3x/-8x products may allow an unauthenticated remote attacker to DoS the MODBUS server with specially crafted packets. 750-363/040-000 firmware, 750-362/040-000 firmware, 750-362/000-001 firmware etc. WAGO The product contains a resource exhaustion vulnerability.Service operation interruption (DoS) It may be in a state
VAR-202305-2975 No CVE Binary Vulnerability in TOTOLINK T8 (CNVD-2023-30416) CVSS V2: 8.3
CVSS V3: -
Severity: HIGH
TOTOLINK T8 is a wireless dual-band router. A binary vulnerability exists in TOTOLINK T8 that could be exploited by an attacker to cause arbitrary code execution.
VAR-202305-2373 CVE-2023-2923 Shenzhen Tenda Technology Co.,Ltd.  of  AC6  Out-of-bounds write vulnerability in firmware CVSS V2: 6.5
CVSS V3: 6.3
Severity: MEDIUM
A vulnerability classified as critical was found in Tenda AC6 US_AC6V1.0BR_V15.03.05.19. Affected by this vulnerability is the function fromDhcpListClient. The manipulation leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-230077 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. Shenzhen Tenda Technology Co.,Ltd. of AC6 An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The Tenda AC6 is a dual-band wireless router from Tenda that supports both 2.4GHz and 5GHz bands, with a maximum transmission rate of 1167Mbps. An attacker could exploit this vulnerability to cause a denial of service
VAR-202305-2449 CVE-2023-21516 Samsung's  Galaxy Store  Cross-site scripting vulnerability in CVSS V2: -
CVSS V3: 9.6
Severity: CRITICAL
XSS vulnerability from InstantPlay in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store. Samsung's Galaxy Store Exists in a cross-site scripting vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.The specific flaw exists within the McsWebViewActivity class. The issue results from a permissive list of allowed inputs. An attacker can leverage this vulnerability to execute code in the context of the current user
VAR-202305-2534 CVE-2023-21514 Samsung's  Galaxy Store  Input verification vulnerability in CVSS V2: -
CVSS V3: 8.8
Severity: HIGH
Improper scheme validation from InstantPlay Deeplink in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store. Samsung's Galaxy Store There is an input validation vulnerability in.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S22 smartphones. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.The specific flaw exists within the InstantPlaysDeepLink class. The issue results from a permissive list of allowed inputs. An attacker can leverage this vulnerability to execute code in the context of the current user
VAR-202305-2448 CVE-2023-21515 Samsung's  Galaxy Store  Vulnerability in CVSS V2: -
CVSS V3: 8.8
Severity: HIGH
InstantPlay which included vulnerable script which could execute javascript in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store. Samsung's Galaxy Store Exists in unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S22 smartphones. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.The specific flaw exists within the McsWebViewActivity class. The issue results from a permissive list of allowed inputs. An attacker can leverage this vulnerability to execute code in the context of the current user
VAR-202305-2187 CVE-2023-25599 Mitel Networks Corporation  of  MiVoice Connect  Cross-site scripting vulnerability in CVSS V2: -
CVSS V3: 7.4
Severity: HIGH
A vulnerability in the conferencing component of Mitel MiVoice Connect through 19.3 SP2, 22.24.1500.0 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation for the test_presenter.php page. A successful exploit could allow an attacker to execute arbitrary scripts. Mitel Networks Corporation of MiVoice Connect Exists in a cross-site scripting vulnerability.Information may be obtained
VAR-202305-2239 CVE-2023-31460 Mitel Networks Corporation  of  MiVoice Connect  Command injection vulnerability in CVSS V2: -
CVSS V3: 7.2
Severity: HIGH
A vulnerability in the Connect Mobility Router component of MiVoice Connect versions 9.6.2208.101 and earlier could allow an authenticated attacker with internal network access to conduct a command injection attack due to insufficient restriction on URL parameters. Mitel Networks Corporation of MiVoice Connect Contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
VAR-202305-2335 CVE-2023-31457 Mitel Networks Corporation  of  MiVoice Connect  Vulnerability in CVSS V2: -
CVSS V3: 9.8
Severity: CRITICAL
A vulnerability in the Headquarters server component of Mitel MiVoice Connect versions 19.3 SP2 (22.24.1500.0) and earlier could allow an unauthenticated attacker with internal network access to execute arbitrary scripts due to improper access control. Mitel Networks Corporation of MiVoice Connect Exists in unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
VAR-202305-2304 CVE-2022-4815 Hitachi Vantara's  Vantara Pentaho  and  Pentaho Business Analytics  Untrusted Data Deserialization Vulnerability in CVSS V2: -
CVSS V3: 8.8
Severity: HIGH
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.3, including 8.3.x deserialize untrusted JSON data without constraining the parser to approved classes and methods. (DoS) It may be in a state
VAR-202305-2429 CVE-2023-25598 Mitel Networks Corporation  of  MiVoice Connect  Cross-site scripting vulnerability in CVSS V2: -
CVSS V3: 6.1
Severity: MEDIUM
A vulnerability in the conferencing component of Mitel MiVoice Connect through 19.3 SP2 and 20.x, 21.x, and 22.x through 22.24.1500.0 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation for the home.php page. A successful exploit could allow an attacker to execute arbitrary scripts. Mitel Networks Corporation of MiVoice Connect Exists in a cross-site scripting vulnerability.Information may be obtained and information may be tampered with
VAR-202305-2121 CVE-2023-33009 plural  ZyXEL  Classic buffer overflow vulnerability in the product CVSS V2: -
CVSS V3: 9.8
Severity: CRITICAL
A buffer overflow vulnerability in the notification function in Zyxel ATP series firmware versions 4.60 through 5.36 Patch 1, USG FLEX series firmware versions 4.60 through 5.36 Patch 1, USG FLEX 50(W) firmware versions 4.60 through 5.36 Patch 1, USG20(W)-VPN firmware versions 4.60 through 5.36 Patch 1, VPN series firmware versions 4.60 through 5.36 Patch 1, ZyWALL/USG series firmware versions 4.60 through 4.73 Patch 1, could allow an unauthenticated attacker to cause denial-of-service (DoS) conditions and even a remote code execution on an affected device. ATP100 firmware, ATP200 firmware, ATP500 firmware etc. ZyXEL The product contains a classic buffer overflow vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
VAR-202305-2357 CVE-2023-31459 Mitel Networks Corporation  of  MiVoice Connect  Vulnerability related to password management function in CVSS V2: -
CVSS V3: 8.8
Severity: HIGH
A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect versions 9.6.2208.101 and earlier could allow an unauthenticated attacker with internal network access to authenticate with administrative privileges, because the initial installation does not enforce a password change. A successful exploit could allow an attacker to make arbitrary configuration changes and execute arbitrary commands. Mitel Networks Corporation of MiVoice Connect Contains a vulnerability related to the password management function.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
VAR-202305-2285 CVE-2023-33010 plural  ZyXEL  Classic buffer overflow vulnerability in the product CVSS V2: -
CVSS V3: 9.8
Severity: CRITICAL
A buffer overflow vulnerability in the ID processing function in Zyxel ATP series firmware versions 4.32 through 5.36 Patch 1, USG FLEX series firmware versions 4.50 through 5.36 Patch 1, USG FLEX 50(W) firmware versions 4.25 through 5.36 Patch 1, USG20(W)-VPN firmware versions 4.25 through 5.36 Patch 1, VPN series firmware versions 4.30 through 5.36 Patch 1, ZyWALL/USG series firmware versions 4.25 through 4.73 Patch 1, could allow an unauthenticated attacker to cause denial-of-service (DoS) conditions and even a remote code execution on an affected device. ATP100 firmware, ATP200 firmware, ATP500 firmware etc. ZyXEL The product contains a classic buffer overflow vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
VAR-202305-2206 CVE-2023-1158 Hitachi Vantara's  Vantara Pentaho  and  Pentaho Business Analytics  Fraud related to unauthorized authentication in CVSS V2: -
CVSS V3: 4.3
Severity: MEDIUM
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.3, including 8.3.x expose dashboard prompts to users who are not part of the authorization list. Hitachi Vantara's Vantara Pentaho and Pentaho Business Analytics Exists in a fraudulent authentication vulnerability.Information may be obtained
VAR-202305-2188 CVE-2023-31458 Mitel Networks Corporation  of  MiVoice Connect  Vulnerability in CVSS V2: -
CVSS V3: 9.8
Severity: CRITICAL
A vulnerability in the Edge Gateway component of Mitel MiVoice Connect versions 19.3 SP2 (22.24.1500.0) and earlier could allow an unauthenticated attacker with internal network access to authenticate with administrative privileges, because initial installation does not enforce a password change. A successful exploit could allow an attacker to make arbitrary configuration changes and execute arbitrary commands. Mitel Networks Corporation of MiVoice Connect Exists in unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
VAR-202305-2256 CVE-2023-31814 D-Link Systems, Inc.  of  DIR-300  Firmware vulnerabilities CVSS V2: -
CVSS V3: 9.8
Severity: CRITICAL
D-Link DIR-300 firmware <=REVA1.06 and <=REVB2.06 is vulnerable to File inclusion via /model/__lang_msg.php. D-Link Systems, Inc. of DIR-300 There are unspecified vulnerabilities in the firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
VAR-202305-2397 CVE-2023-31741 Linksys E2000 Command Injection Vulnerability CVSS V2: 8.3
CVSS V3: 7.2
Severity: HIGH
There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, they can inject commands into the post request parameters wl_ssid, wl_ant, wl_rate, WL_atten_ctl, ttcp_num, ttcp_size in the httpd s Start_EPI() function, thereby gaining shell privileges. Cisco Systems (Linksys) of e2000 Firmware contains a command injection vulnerability.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. Linksys E2000 is a wireless router from Linksys, an American company. No detailed vulnerability details are currently available
VAR-202305-2432 CVE-2023-31742 Cisco Systems  (Linksys)  of  Linksys WRT54GL  Command injection vulnerability in firmware CVSS V2: -
CVSS V3: 7.2
Severity: HIGH
There is a command injection vulnerability in the Linksys WRT54GL router with firmware version 4.30.18.006. If an attacker gains web management privileges, they can inject commands into the post request parameters wl_ant, wl_rate, WL_atten_ctl, ttcp_num, ttcp_size in the httpd s Start_EPI() function, thereby gaining shell privileges. (DoS) It may be in a state
VAR-202305-2074 CVE-2022-46680 Schneider Electric  Made  PowerLogic  Vulnerability of Plain Text Transmission of Sensitive Information in CVSS V2: -
CVSS V3: 9.8
Severity: CRITICAL
A CWE-319: Cleartext transmission of sensitive information vulnerability exists that could cause disclosure of sensitive information, denial of service, or modification of data if an attacker is able to intercept network traffic. Schneider Electric Provided by the company PowerLogic The product contains the following vulnerabilities: * Plain text transmission of important information (CWE-319) - CVE-2022-46680If the vulnerability is exploited, it may be affected as follows. It was * Sensitive information may be stolen by a remote third party, or service may be disrupted ( DoS ) or have data tampered with