VARIoT IoT vulnerabilities database

Affected products: vendor, model and version
CWE format is 'CWE-number'. Threat type can be: remote or local
Look up free text in title and description

VAR-202211-1616 CVE-2022-44193 NETGEAR R7000P Buffer Overflow Vulnerability CVSS V2: 10.0
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameters: starthour, startminute , endhour, and endminute. NETGEAR R7000P is a wireless router made by NETGEAR. No detailed vulnerability details are currently available
VAR-202211-1617 CVE-2022-44191 NETGEAR R7000P KEY1/KEY2 Buffer Overflow Vulnerability CVSS V2: 9.0
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameters KEY1 and KEY2. NETGEAR R7000P is a wireless router made by NETGEAR. The vulnerability is due to the lack of length verification of the input data for the KEY1 and KEY2 parameters. Attackers can use this vulnerability to initiate denial of service or remote code execution
VAR-202211-1570 CVE-2022-41223 Mitel Networks Corporation  of  MiVoice Connect  Code injection vulnerability in CVSS V2: -
CVSS V3: 6.8
Severity: MEDIUM
The Director database component of MiVoice Connect through 19.3 (22.22.6100.0) could allow an authenticated attacker to conduct a code-injection attack via crafted data due to insufficient restrictions on the database data type. Mitel Networks Corporation of MiVoice Connect There is a code injection vulnerability in.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state
VAR-202211-1635 CVE-2022-44197 NETGEAR R7000P Buffer Overflow Vulnerability (CNVD-2022-81488) CVSS V2: 10.0
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via parameter openvpn_server_ip. NETGEAR R7000P is a wireless router made by NETGEAR. No detailed vulnerability details were provided at this time
VAR-202211-1517 CVE-2022-44190 NETGEAR R7000P enable_band_steering buffer overflow vulnerability CVSS V2: 9.0
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameter enable_band_steering. NETGEAR R7000P is a wireless router made by NETGEAR. The vulnerability is caused by the lack of length verification of the input data in the enable_band_steering parameter. Attackers can use this vulnerability to cause denial of service or remote code execution
VAR-202211-1389 CVE-2022-0222 Schneider Electric Product Authorization Issue Vulnerability CVSS V2: 7.8
CVSS V3: 7.5
Severity: HIGH
A CWE-269: Improper Privilege Management vulnerability exists that could cause a denial of service of the Ethernet communication of the controller when sending a specific request over SNMP. Affected products: Modicon M340 CPUs(BMXP34* versions prior to V3.40), Modicon M340 X80 Ethernet Communication modules:BMXNOE0100 (H), BMXNOE0110 (H), BMXNOR0200H RTU(BMXNOE* all versions)(BMXNOR* versions prior to v1.7 IR24). Schneider Electric Modicon M340 is a medium-range PLC (programmable logic controller) for industrial processes and infrastructures from Schneider Electric, France. Schneider Electric products have an authorization problem vulnerability. This vulnerability stems from improper authority management
VAR-202211-1634 CVE-2022-39070 ZTE ZXA10 C3XX Access Control Error Vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
There is an access control vulnerability in some ZTE PON OLT products. Due to improper access control settings, remote attackers could use the vulnerability to log in to the device and execute any operation. ZTE ZXA10 C3XX is a series of optical access and convergence equipment with EPON/GPON functions produced by China ZTE Corporation (ZTE)
VAR-202211-1567 CVE-2022-2513 Hitachi Energy PCM600 Information Disclosure Vulnerability CVSS V2: 4.9
CVSS V3: 5.5
Severity: MEDIUM
A vulnerability exists in the Intelligent Electronic Device (IED) Connectivity Package (ConnPack) credential storage function in Hitachi Energy’s PCM600 product included in the versions listed below, where IEDs credentials are stored in a cleartext format in the PCM600 database and logs files. An attacker having get access to the exported backup file can exploit the vulnerability and obtain user credentials of the IEDs. Additionally, an attacker with administrator access to the PCM600 host machine can obtain other user credentials by analyzing database log files. The credentials may be used to perform unauthorized modifications such as loading incorrect configurations, reboot the IEDs or cause a denial-of-service on the IEDs. Hitachi Energy PCM600 is a simplified management tool for protection and control relays from Hitachi, Japan. Hitachi Energy PCM600 has an information disclosure vulnerability. The vulnerability stems from the fact that IED credentials are stored in the PCM600 database in clear text
VAR-202211-1501 CVE-2022-40602 ZyXEL  of  lte3301-m209  Vulnerability related to use of hardcoded credentials in firmware CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
A flaw in the Zyxel LTE3301-M209 firmware verisons prior to V1.00(ABLG.6)C0 could allow a remote attacker to access the device using an improper pre-configured password if the remote administration feature has been enabled by an authenticated administrator. ZyXEL of lte3301-m209 A vulnerability exists in the firmware regarding the use of hardcoded credentials.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. Zyxel LTE3301-M209 is a wireless router made by China Zyxel. There is an access control error vulnerability in Zyxel LTE3301-M209 V1.00(ABLG.6)C0 and earlier versions, which is caused by incorrect access control
VAR-202211-1344 CVE-2022-37301 Schneider Electric Product Numeric Error Vulnerability CVSS V2: 7.8
CVSS V3: 7.5
Severity: HIGH
A CWE-191: Integer Underflow (Wrap or Wraparound) vulnerability exists that could cause a denial of service of the controller due to memory access violations when using the Modbus TCP protocol. Affected products: Modicon M340 CPU (part numbers BMXP34*)(V3.40 and prior), Modicon M580 CPU (part numbers BMEP* and BMEH*)(V3.22 and prior), Legacy Modicon Quantum/Premium(All Versions), Modicon Momentum MDI (171CBU*)(All Versions), Modicon MC80 (BMKC80)(V1.7 and prior). Schneider Electric Modicon M340 is a medium-range PLC (programmable logic controller) for industrial processes and infrastructures from Schneider Electric, France. Schneider Electric products have a number error vulnerability. The vulnerability is caused by a memory access violation. Attackers can use the vulnerability to launch a denial of service attack
VAR-202211-1519 CVE-2022-44187 NETGEAR R7000P Buffer Overflow Vulnerability CVSS V2: 10.0
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via wan_dns1_pri. NETGEAR R7000P is a wireless router made by NETGEAR. There is a security vulnerability in NETGEAR R7000P V1.3.0.8, which is caused by the influence of the wan_dns1_prii parameter. No detailed vulnerability details are currently available
VAR-202211-1564 CVE-2022-44202 D-Link DIR-823G sub_4883F0 function buffer overflow vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
D-Link DIR878 1.02B04 and 1.02B05 are vulnerable to Buffer Overflow. D-Link DIR-823G is a wireless router made by China D-Link Company. The vulnerability is caused by the lack of length verification of the input data in the sub_4883F0 function. Attackers can use this vulnerability to cause denial of service or remote code execution
VAR-202211-1565 CVE-2022-44806 D-Link DIR-882 sub_46D180 function buffer overflow vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
D-Link DIR-882 1.10B02 and 1.20B06 is vulnerable to Buffer Overflow. D-Link DIR-882 is a wireless router made by China D-Link Company. The vulnerability is caused by the sub_46D180 function wan_wan_phy_ifname parameter lacking length verification for input data. Attackers can exploit this vulnerability to cause denial of service or remote code execution
VAR-202211-1483 CVE-2022-44199 NETGEAR R7000P openvpn_server_ip buffer overflow vulnerability CVSS V2: 9.0
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameter openvpn_server_ip. NETGEAR R7000P is a wireless router made by NETGEAR. The vulnerability stems from the lack of length verification of the data entered in the openvpn_server_ip parameter. Attackers can use this vulnerability to cause denial of service or remote code execution
VAR-202211-1484 CVE-2022-44200 NETGEAR R7000P stamode_dns1_pri/stamode_dns1_sec buffer overflow vulnerability CVSS V2: 10.0
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.0.8, V1.3.1.64 is vulnerable to Buffer Overflow via parameters: stamode_dns1_pri and stamode_dns1_sec. NETGEAR R7000P is a wireless router made by NETGEAR. This vulnerability stems from the lack of length verification of the input data of the stamode_dns1_pri and stamode_dns1_sec parameters. Attackers can exploit the vulnerability to cause denial of service or remote code execution
VAR-202211-1571 CVE-2022-35407 Insyde InsydeH2O Buffer error vulnerability CVSS V2: -
CVSS V3: 7.8
Severity: HIGH
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. A stack buffer overflow leads to arbitrary code execution in the SetupUtility driver on Intel platforms. An attacker can change the values of certain UEFI variables. If the size of the second variable exceeds the size of the first, then the buffer will be overwritten. This issue affects the SetupUtility driver of InsydeH2O
VAR-202211-1498 CVE-2022-44201 D-Link DIR-823G Command Execution Vulnerability CVSS V2: 10.0
CVSS V3: 9.8
Severity: CRITICAL
D-Link DIR823G 1.02B05 is vulnerable to Commad Injection. D-Link DIR-823G is a wireless router made by China D-Link Company. D-Link DIR-823G firmware version 1.02B05 has a command execution vulnerability, which is caused by sub_42383C failing to properly filter special characters, commands, etc. in constructing commands. An attacker could exploit this vulnerability to cause arbitrary command execution
VAR-202211-1587 CVE-2022-44194 NETGEAR R7000P Buffer error vulnerability CVSS V2: -
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via parameters apmode_dns1_pri and apmode_dns1_sec.
VAR-202211-1697 CVE-2022-44184 NETGEAR R7000P wan_dns1_sec buffer overflow vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter wan_dns1_sec. NETGEAR R7000P is a wireless router made by NETGEAR. This vulnerability is caused by the lack of length verification of the data input for the wan_dns1_sec parameter in /usr/sbin/httpd. Attackers can exploit the vulnerability to cause denial of service or remote code execution
VAR-202211-1566 CVE-2022-44196 NETGEAR R7000P Buffer Overflow Vulnerability CVSS V2: 10.0
CVSS V3: 9.8
Severity: CRITICAL
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via parameter openvpn_push1. The NETGEAR R7000P is a dual-band router from Netgear's Nighthawk series, optimized for gaming, streaming, and mobile devices. Detailed vulnerability details are not available at this time