VARIoT IoT vulnerabilities database

Affected products: vendor, model and version
CWE format is 'CWE-number'. Threat type can be: remote or local
Look up free text in title and description

VAR-202107-1729 No CVE Wisdom technology enterprise-level flow control cloud router has weak password vulnerability CVSS V2: 4.0
CVSS V3: -
Severity: MEDIUM
Beijing Zhimin Technology Development Co., Ltd. is a high-tech enterprise specializing in the research and development, production, sales, leasing and service of security inspection, anti-terrorism, police, fire rescue and EOD equipment. MinTech's enterprise-level flow control cloud router has a weak password vulnerability, which can be exploited by attackers to obtain sensitive information.
VAR-202107-1726 No CVE D-Link DIR-600M has weak password vulnerability CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
D-Link DIR-600M is a wireless router. D-Link DIR-600M has weak password vulnerability. Attackers use this vulnerability to log in to the background to obtain sensitive information.
VAR-202107-1727 No CVE Ruijie Networks RG-EW1200G has a command execution vulnerability CVSS V2: 7.1
CVSS V3: -
Severity: HIGH
RG-EW1200G is a dual-band dual-gigabit wireless router. Ruijie Networks RG-EW1200G has a command execution vulnerability. An attacker can use this vulnerability to gain control of the website server.
VAR-202107-1725 No CVE D-Link DIR-818LW has weak password vulnerability CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
D-Link DIR-818LW is a wireless router. D-Link DIR-818LW has a weak password vulnerability. Attackers can use weak passwords to log in to the background to obtain sensitive information.
VAR-202107-1910 No CVE Hysine Webtalk system has weak password vulnerability CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
Hysine (Hexin Control) is the world's leading manufacturer of BACnet control systems. The Hysine Webtalk system has a weak password vulnerability, which can be exploited by attackers to obtain sensitive information.
VAR-202107-1723 No CVE TOTOLINK T10 router has command execution vulnerability (CNVD-2021-44929) CVSS V2: 8.3
CVSS V3: -
Severity: HIGH
TOTOLINK is a brand owned by Zeon Electronics (Shenzhen) Co., Ltd. Founded in 1999, it is a Hong Kong-listed high-tech foreign company (stock code: HK.8287) and one of the world's leading network equipment suppliers. The TOTOLINK T10 router has a command execution vulnerability. Attackers can use this vulnerability to execute arbitrary commands.
VAR-202107-1732 No CVE Command execution vulnerability exists in TOTOLINK T10 router (CNVD-2021-43463) CVSS V2: 8.3
CVSS V3: -
Severity: HIGH
TOTOLINK is a brand owned by Zeon Electronics (Shenzhen) Co., Ltd. Founded in 1999, it is a Hong Kong-listed high-tech foreign company (stock code: HK.8287) and one of the world's leading network equipment suppliers. TOTOLINK T10 router has a command execution vulnerability. Attackers can use this vulnerability to execute arbitrary commands.
VAR-202107-1731 No CVE D_Link DIR-850L has weak password vulnerability CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
DIR-850L is a wireless AC1200 dual-band gigabit cloud router. D_Link DIR-850L has a weak password vulnerability, attackers can use the vulnerability to obtain sensitive information
VAR-202107-1724 No CVE TOTOLINK T10 router has command execution vulnerability (CNVD-2021-44930) CVSS V2: 8.3
CVSS V3: -
Severity: HIGH
TOTOLINK is a brand owned by Zeon Electronics (Shenzhen) Co., Ltd. Founded in 1999, it is a Hong Kong-listed high-tech foreign company (stock code: HK.8287) and one of the world's leading network equipment suppliers. The TOTOLINK T10 router has a command execution vulnerability. Attackers can use this vulnerability to execute arbitrary commands.
VAR-202107-1730 No CVE Suzhou Keda Technology Co., Ltd. MSS streaming media server has logic flaws and vulnerabilities CVSS V2: 6.4
CVSS V3: -
Severity: MEDIUM
Suzhou Keda Technology Co., Ltd. is a leading provider of video and security products and solutions. It is committed to helping various government and corporate customers improve communication and management efficiency with video conferencing, video surveillance and rich video application solutions. The MSS streaming media server of Suzhou Keda Technology Co., Ltd. has a logical flaw, and an attacker can use the flaw to obtain sensitive information.
VAR-202107-1728 No CVE A weak password vulnerability exists in the enterprise-level flow control cloud router of Fengwang Interconnection CVSS V2: 4.0
CVSS V3: -
Severity: MEDIUM
Chengdu Zhifeng Technology Co., Ltd. was established in October 2016. It is an emerging high-tech company integrating R&D, production and sales. The enterprise-level flow control cloud router of BeeNet has a weak password vulnerability, which can be exploited by attackers to obtain sensitive information.
VAR-202107-1734 No CVE TOTOLINK T10 router has a command execution vulnerability (CNVD-2021-43461) CVSS V2: 8.3
CVSS V3: -
Severity: HIGH
TOTOLINK is a brand owned by Zeon Electronics (Shenzhen) Co., Ltd. Founded in 1999, it is a Hong Kong-listed high-tech foreign company (stock code: HK.8287) and one of the world's leading network equipment suppliers. TOTOLINK T10 router has a command execution vulnerability. Attackers can use this vulnerability to execute arbitrary commands.
VAR-202107-1733 No CVE Command execution vulnerability exists in TOTOLINK T10 router (CNVD-2021-44931) CVSS V2: 8.3
CVSS V3: -
Severity: HIGH
TOTOLINK is a brand owned by Zeon Electronics (Shenzhen) Co., Ltd. Founded in 1999, it is a Hong Kong-listed high-tech foreign company (stock code: HK.8287) and one of the world's leading network equipment suppliers. TOTOLINK T10 router has a command execution vulnerability. Attackers can use this vulnerability to execute arbitrary commands.
VAR-202107-1735 No CVE TOTOLINK T10 router has command execution vulnerability (CNVD-2021-43462) CVSS V2: 8.3
CVSS V3: -
Severity: HIGH
TOTOLINK is a brand owned by Zeon Electronics (Shenzhen) Co., Ltd. Founded in 1999, it is a Hong Kong-listed high-tech foreign company (stock code: HK.8287) and one of the world's leading network equipment suppliers. TOTOLINK T10 router has a command execution vulnerability. Attackers can use this vulnerability to execute arbitrary commands.
VAR-202107-1744 No CVE Unauthorized access vulnerability exists in Axis Communications AB 210A CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
Axis 210A is a network camera of Axis Communications AB. Axis Communications AB 210A has an unauthorized access vulnerability, which can be exploited by attackers to obtain sensitive information.
VAR-202107-1751 No CVE Panasonic Electric (China) Co., Ltd. WV-SW152 has an unauthorized access vulnerability CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
Matsushita Electric (China) Co., Ltd. was established in 1994 and is mainly responsible for the sales and after-sales service of home appliances, systems, environment, components and other commodities. Panasonic Electric (China) Co., Ltd. WV-SW152 has an unauthorized access vulnerability. Attackers can use this vulnerability to obtain sensitive information.
VAR-202107-1855 No CVE Panasonic Electric (China) Co., Ltd. WV-SPN310 and WV-SPN310A have unauthorized access vulnerabilities CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
Matsushita Electric (China) Co., Ltd. was established in 1994 and is mainly responsible for the sales and after-sales service of home appliances, systems, environment, components and other commodities. Matsushita Electric (China) Co., Ltd. WV-SPN310 and WV-SPN310A have unauthorized access vulnerabilities, which can be exploited by attackers to obtain sensitive information.
VAR-202107-1755 No CVE Panasonic Electric (China) Co., Ltd. WV-SP102 has an unauthorized access vulnerability CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
Matsushita Electric (China) Co., Ltd. was established in 1994 and is mainly responsible for the sales and after-sales service of home appliances, systems, environment, components and other commodities. Panasonic Electric (China) Co., Ltd. WV-SP102 has an unauthorized access vulnerability. Attackers can use this vulnerability to obtain sensitive information.
VAR-202107-1861 No CVE HP Color LaserJet MFP M277n has unauthorized access vulnerability CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
HP-Color-LaserJet-MFP-M277n is a printer of HP Trading (Shanghai) Co., Ltd. HP Color LaserJet MFP M277n has an unauthorized access vulnerability, which can be exploited by attackers to obtain sensitive information.
VAR-202107-1754 No CVE Panasonic Electric (China) Co., Ltd. WV-SW458 has an unauthorized access vulnerability CVSS V2: 5.0
CVSS V3: -
Severity: MEDIUM
Matsushita Electric (China) Co., Ltd. was established in 1994 and is mainly responsible for the sales and after-sales service of home appliances, systems, environment, components and other commodities. Panasonic Electric (China) Co., Ltd. WV-SW458 has an unauthorized access vulnerability. Attackers can use this vulnerability to obtain sensitive information.