VARIoT IoT vulnerabilities database
| VAR-202209-2271 | No CVE | Weak password vulnerability in TOTOLINK A3002MU |
CVSS V2: 5.0 CVSS V3: - Severity: MEDIUM |
A3002MU is a router.
TOTOLINK A3002MU has a weak password vulnerability, which can be exploited by attackers to obtain sensitive information.
| VAR-202208-1474 | CVE-2021-41437 | ASUSTeK Computer Inc. of RT-AX88U Injection Vulnerability in Firmware |
CVSS V2: 7.8 CVSS V3: 6.5 Severity: MEDIUM |
An HTTP response splitting attack in web application in ASUS RT-AX88U before v3.0.0.4.388.20558 allows an attacker to craft a specific URL that if an authenticated victim visits it, the URL will give access to the cloud storage of the attacker. ASUSTeK Computer Inc. of RT-AX88U Firmware has an injection vulnerability.Information may be obtained. ASUS RT-AX88U is a wireless router from China ASUS (ASUS)
| VAR-202209-1750 | CVE-2022-40102 | Shenzhen Tenda Technology Co.,Ltd. of i9 Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.8 CVSS V3: 7.5 Severity: HIGH |
Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formwrlSSIDset function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string. Shenzhen Tenda Technology Co.,Ltd. of i9 An out-of-bounds write vulnerability exists in firmware.Service operation interruption (DoS) It may be in a state. Tenda i9 is an enterprise wireless AP device
| VAR-202209-1751 | CVE-2022-40106 | Shenzhen Tenda Technology Co.,Ltd. of i9 Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.8 CVSS V3: 7.5 Severity: HIGH |
Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the set_local_time function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string. Shenzhen Tenda Technology Co.,Ltd. of i9 An out-of-bounds write vulnerability exists in firmware.Service operation interruption (DoS) It may be in a state. Tenda i9 is an enterprise wireless AP device
| VAR-202209-1665 | CVE-2022-40101 | Shenzhen Tenda Technology Co.,Ltd. of i9 Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.8 CVSS V3: 7.5 Severity: HIGH |
Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formWifiMacFilterSet function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string. Shenzhen Tenda Technology Co.,Ltd. of i9 An out-of-bounds write vulnerability exists in firmware.Service operation interruption (DoS) It may be in a state. Tenda i9 is an enterprise wireless AP device
| VAR-202209-1625 | CVE-2022-40868 | Shenzhen Tenda Technology Co.,Ltd. of W20E Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
Tenda W20E router V15.11.0.6 (US_W20EV4.0br_V15.11.0.6(1068_1546_841)_CN_TDC) contains a stack overflow vulnerability in the function formDelDhcpRule with the request /goform/delDhcpRules/. Shenzhen Tenda Technology Co.,Ltd. of W20E An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The vulnerability is due to the fact that the formDelDhcpRule method does not check the size of the input data when the request /goform/delDhcpRules/ is included. Attackers can exploit the vulnerability to cause remote code execution or denial of service
| VAR-202209-1619 | CVE-2022-40103 | Shenzhen Tenda Technology Co.,Ltd. of i9 Out-of-bounds write vulnerability in firmware |
CVSS V2: 4.9 CVSS V3: 5.5 Severity: MEDIUM |
Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formSetAutoPing function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string. Shenzhen Tenda Technology Co.,Ltd. of i9 An out-of-bounds write vulnerability exists in firmware.Service operation interruption (DoS) It may be in a state. Tenda i9 is an enterprise wireless AP device
| VAR-202209-1829 | CVE-2022-40100 | Shenzhen Tenda Technology Co.,Ltd. of i9 Command injection vulnerability in firmware |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
Tenda i9 v1.0.0.8(3828) was discovered to contain a command injection vulnerability via the FormexeCommand function. Shenzhen Tenda Technology Co.,Ltd. (DoS) It may be in a state
| VAR-202209-1752 | CVE-2022-40107 | Shenzhen Tenda Technology Co.,Ltd. of i9 Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.8 CVSS V3: 7.5 Severity: HIGH |
Tenda i9 v1.0.0.8(3828) was discovered to contain a buffer overflow via the formexeCommand function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted string. Shenzhen Tenda Technology Co.,Ltd. of i9 An out-of-bounds write vulnerability exists in firmware.Service operation interruption (DoS) It may be in a state. Tenda i9 is an enterprise wireless AP device
| VAR-202209-1672 | CVE-2022-40860 | Tenda of AC15 Out-of-bounds write vulnerability in firmware |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
Tenda AC15 router V15.03.05.19 contains a stack overflow vulnerability in the function formSetQosBand->FUN_0007dd20 with request /goform/SetNetControlList. Tenda of AC15 An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. Tenda AC15 is a wireless router made by China Tenda Company. The vulnerability is due to the fact that the formSetQosBand method does not check the size of the input data when it has the request /goform/SetNetControlList. Attackers can exploit the vulnerability to cause remote code execution or denial of service
| VAR-202209-1931 | CVE-2022-3236 | of Sophos firewall Code injection vulnerability in |
CVSS V2: - CVSS V3: 9.8 Severity: CRITICAL |
A code injection vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v19.0 MR1 and older. (DoS) It may be in a state
| VAR-202209-1717 | CVE-2022-37235 | of netgear R7000 Out-of-bounds write vulnerability in firmware |
CVSS V2: 10.0 CVSS V3: 9.8 Severity: CRITICAL |
Netgear Nighthawk AC1900 Smart WiFi Dual Band Gigabit Router R7000-V1.0.11.134_10.2.119 is vulnerable to Buffer Overflow via the wl binary in firmware. There is a stack overflow vulnerability caused by strncat. of netgear R7000 An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. NETGEAR R7000 is a wireless router from NETGEAR. Attackers can use this vulnerability to execute unauthorized instructions, obtain system privileges, and then perform various illegal operations
| VAR-202209-1875 | CVE-2020-36521 | Out-of-bounds read vulnerability in multiple Apple products |
CVSS V2: - CVSS V3: 7.1 Severity: HIGH |
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iCloud for Windows 11.4, iOS 14.0 and iPadOS 14.0, watchOS 7.0, tvOS 14.0, iCloud for Windows 7.21, iTunes for Windows 12.10.9. Processing a maliciously crafted tiff file may lead to a denial-of-service or potentially disclose memory contents. iCloud , iTunes , iPadOS Multiple Apple products contain out-of-bounds read vulnerabilities.Information is obtained and service operation is interrupted (DoS) It may be in a state
| VAR-202209-1605 | CVE-2022-32783 | apple's macOS Vulnerability in |
CVSS V2: - CVSS V3: 5.5 Severity: MEDIUM |
A logic issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.4. An app may gain unauthorized access to Bluetooth. apple's macOS Exists in unspecified vulnerabilities.Information may be tampered with. Apple macOS Monterey is the eighteenth major release of Apple's Macintosh desktop operating system, macOS. A logic error vulnerability exists in Apple macOS Monterey
| VAR-202209-1794 | CVE-2022-40864 | Tenda of AC15 firmware and AC18 Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
Tenda AC15 and AC18 routers V15.03.05.19 contain stack overflow vulnerabilities in the function setSmartPowerManagement with the request /goform/PowerSaveSet. Tenda of AC15 firmware and AC18 An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. Both the Tenda AC15 and Tenda AC18 are products of the Chinese company Tenda. Tenda AC15 is a wireless router. Tenda AC18 is a router. The vulnerability stems from the fact that the parameter time of the setSmartPowerManagement method does not check the size of the input data when the method contains the request /goform/PowerSaveSet. Attackers can exploit the vulnerability to cause remote code execution or Denial of service
| VAR-202209-1795 | CVE-2022-40867 | Shenzhen Tenda Technology Co.,Ltd. of W20E Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
Tenda W20E router V15.11.0.6 (US_W20EV4.0br_V15.11.0.6(1068_1546_841)_CN_TDC) contains a stack overflow vulnerability in the function formIPMacBindDel with the request /goform/delIpMacBind/. Shenzhen Tenda Technology Co.,Ltd. of W20E An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The vulnerability is due to the fact that the formIPMacBindDel method does not check the size of the input data when the request /goform/delIpMacBind/ is included. Attackers can exploit the vulnerability to cause remote code execution or rejection Serve
| VAR-202209-1836 | CVE-2022-40861 | Shenzhen Tenda Technology Co.,Ltd. of AC18 Out-of-bounds write vulnerability in firmware |
CVSS V2: 6.5 CVSS V3: 7.2 Severity: HIGH |
Tenda AC18 router V15.03.05.19 contains a stack overflow vulnerability in the formSetQosBand->FUN_0007db78 function with the request /goform/SetNetControlList/. Shenzhen Tenda Technology Co.,Ltd. of AC18 An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The vulnerability is caused by the fact that the formSetQosBand function does not check the size of the input data. Attackers can exploit the vulnerability to cause remote code execution or denial of service
| VAR-202209-1834 | CVE-2022-40869 | Tenda of AC15 firmware and AC18 Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
Tenda AC15 and AC18 routers V15.03.05.19 contain stack overflow vulnerabilities in the function fromDhcpListClient with a combined parameter "list*" ("%s%d","list"). Tenda of AC15 firmware and AC18 An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. Both the Tenda AC15 and Tenda AC18 are products of the Chinese company Tenda. Tenda AC15 is a wireless router. Tenda AC18 is a router. The vulnerability is caused by the fact that the fromDhcpListClient method does not check the size of the input data with the combination parameter list*. Attackers can exploit the vulnerability to cause remote code execution or denial of service
| VAR-202209-1570 | CVE-2022-32782 | apple's macOS Vulnerability in |
CVSS V2: - CVSS V3: 4.4 Severity: MEDIUM |
This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.4. An app with root privileges may be able to access private information. apple's macOS Exists in unspecified vulnerabilities.Information may be obtained
| VAR-202209-1578 | CVE-2022-40853 | Tenda of AC15 Out-of-bounds write vulnerability in firmware |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
Tenda AC15 router V15.03.05.19 contains a stack overflow via the list parameter at /goform/fast_setting_wifi_set. Tenda of AC15 An out-of-bounds write vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. Tenda AC15 is a wireless router made by China Tenda Company. The vulnerability comes from the fact that the list parameter of the fast_setting_wifi_set function does not check the size of the input data. Attackers can exploit the vulnerability to cause remote code execution or denial of service