VARIoT news about IoT security

Trust: 5.25

Fetched: April 5, 2023, 9:16 a.m., Published: April 16, 2023, midnight
Vulnerabilities: code execution, integer overflow, memory corruption...
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: iphone
vendor: apple model: safari
vendor: apple model: itunes
vendor: apple model: watch
vendor: apple model: webkit
vendor: apple model: ipad air
vendor: trend micro model: security
vendor: trend model: security
db: NVD ids: CVE-2022-42867, CVE-2022-42846, CVE-2022-46698, CVE-2022-46705, CVE-2022-42855, CVE-2022-42852, CVE-2022-42850, CVE-2022-32943, CVE-2022-46700, CVE-2022-42844, CVE-2022-46696, CVE-2022-46689, CVE-2022-46716, CVE-2022-46694, CVE-2022-42862, CVE-2022-46691, CVE-2022-46703, CVE-2022-42837, CVE-2022-46692, CVE-2022-42864, CVE-2022-46699, CVE-2022-46690, CVE-2022-42865, CVE-2022-42849, CVE-2022-46717, CVE-2022-42859, CVE-2022-42842, CVE-2022-46702, CVE-2022-42843, CVE-2022-42848, CVE-2022-42863, CVE-2022-42861, CVE-2022-42856, CVE-2022-46695, CVE-2022-42851, CVE-2022-46693, CVE-2022-42845, CVE-2022-42840, CVE-2022-42866, CVE-2022-46720, CVE-2022-46701
Related entries in the VARIoT vulnerabilities database: VAR-202212-1132

Trust: 4.0

Fetched: April 5, 2023, 9:14 a.m., Published: April 5, 2023, 7:13 a.m.
Vulnerabilities: input validation vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2023-1750, CVE-2023-1749, CVE-2023-1752, CVE-2022-42475, CVE-2023-1751, CVE-2023-1748

Trust: 5.0

Fetched: April 5, 2023, 9:14 a.m., Published: March 22, 2023, 3:49 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: mobility express
vendor: cisco model: series wireless controller
vendor: cisco model: wireless controller
vendor: cisco model: wireless lan controller
vendor: cisco model: catalyst
vendor: cisco model: series
vendor: cisco model: catalyst 9800

Trust: 3.75

Fetched: April 5, 2023, 9:13 a.m., Published: March 9, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-1750, CVE-2023-1749, CVE-2023-1752, CVE-2023-1751, CVE-2023-1748

Trust: 4.0

Fetched: April 5, 2023, 9:12 a.m., Published: March 24, 2023, 7:59 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe

Trust: 3.75

Fetched: April 5, 2023, 9:11 a.m., Published: April 4, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-27598, CVE-2022-27597

Trust: 4.75

Fetched: April 5, 2023, 9:10 a.m., Published: Sept. 5, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-27410

Trust: 3.25

Fetched: April 2, 2023, 9:21 a.m., Published: March 29, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
Related entries in the VARIoT vulnerabilities database: VAR-201902-0445, VAR-201803-2160

Trust: 3.75

Fetched: April 2, 2023, 9:20 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco systems model: webex
vendor: cisco model: webex
db: NVD ids: CVE-2023-22883, CVE-2023-1530, CVE-2023-1534, CVE-2023-24578, CVE-2023-25738, CVE-2019-1798, CVE-2023-25737, CVE-2023-25745, CVE-2023-25733, CVE-2023-25729, CVE-2019-1677, CVE-2023-25741, CVE-2023-1532, CVE-2023-25743, CVE-2023-25734, CVE-2023-1531, CVE-2019-11068, CVE-2023-1529, CVE-2023-25735, CVE-2018-4844, CVE-2023-25740, CVE-2023-0767, CVE-2023-25134, CVE-2023-25744, CVE-2023-24577, CVE-2019-16168, CVE-2023-28155, CVE-2023-25731, CVE-2023-25732, CVE-2023-25736, CVE-2023-25739, CVE-2023-25742, CVE-2023-1533, CVE-2023-1528, CVE-2023-25730, CVE-2023-25728, CVE-2019-12383, CVE-2023-24579, CVE-2022-42331

Trust: 4.75

Fetched: April 2, 2023, 9:19 a.m., Published: April 2, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: essential model: phone
vendor: apple model: iphone
vendor: apple model: apple ipad
vendor: apple model: ipad
vendor: apple model: watch
vendor: oneplus model: one
vendor: motorola model: motorola
vendor: google model: pixel
vendor: google model: home
Related entries in the VARIoT vulnerabilities database: VAR-202108-2051

Trust: 4.5

Fetched: April 2, 2023, 9:18 a.m., Published: April 1, 2023, 9:36 p.m.
Vulnerabilities: cross-site scripting, code execution, memory corruption
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
vendor: google model: android
vendor: apple model: macos
db: NVD ids: CVE-2021-30900, CVE-2013-3163, CVE-2023-0266, CVE-2022-42948, CVE-2022-22706, CVE-2017-7494, CVE-2022-39197, CVE-2022-38181, CVE-2022-3038

Trust: 4.75

Fetched: April 2, 2023, 9:15 a.m., Published: March 28, 2023, 2:09 p.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: delegate model: delegate

Trust: 3.5

Fetched: April 2, 2023, 9:14 a.m., Published: May 2, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
db: NVD ids: CVE-2023-28303
Related entries in the VARIoT vulnerabilities database: VAR-202212-1132, VAR-202205-1958, VAR-202205-1370, VAR-202207-0874

Trust: 4.5

Fetched: April 2, 2023, 9:12 a.m., Published: March 25, 2023, 5:56 p.m.
Vulnerabilities: directory traversal
Affected productsExternal IDs
vendor: fortigate model: fortios
vendor: google model: google chrome
vendor: google model: chrome
vendor: trend model: security
db: NVD ids: CVE-2022-42475, CVE-2022-30190, CVE-2022-2294, CVE-2022-22047, CVE-2022-41328, CVE-2022-26485
Related entries in the VARIoT vulnerabilities database: VAR-202108-2051, VAR-202212-1751

Trust: 3.75

Fetched: April 2, 2023, 9:11 a.m., Published: March 30, 2023, 1:10 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
vendor: google model: chrome
vendor: samsung model: mobile
vendor: xiaomi model: browser
db: NVD ids: CVE-2021-30900, CVE-2023-0266, CVE-2022-4262, CVE-2022-22706, CVE-2022-4135, CVE-2022-38181, CVE-2022-3723, CVE-2022-42856, CVE-2022-3038

Trust: 4.0

Fetched: April 2, 2023, 9:10 a.m., Published: March 22, 2023, 3:49 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
vendor: cisco model: iox application
vendor: cisco model: ios xe
vendor: cisco model: ios xe software

Trust: 4.0

Fetched: April 2, 2023, 9:10 a.m., Published: March 22, 2023, 3:49 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: fxos
vendor: cisco model: firepower management center
vendor: cisco model: nx-os
vendor: cisco model: ios xr
vendor: cisco model: intrusion prevention system
vendor: cisco model: cisco ios
vendor: cisco model: router
vendor: cisco model: ios xe
vendor: cisco model: nx-os software
vendor: cisco model: ios xe software
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower threat defense
vendor: cisco model: ios xr software
vendor: cisco model: firepower
Related entries in the VARIoT vulnerabilities database: VAR-202212-1751, VAR-202108-2051

Trust: 4.75

Fetched: March 31, 2023, 9:11 a.m., Published: March 9, 2023, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: google model: android
vendor: google model: chrome
vendor: samsung model: note
db: NVD ids: CVE-2022-3038, CVE-2022-4135, CVE-2022-42856, CVE-2022-3723, CVE-2023-26083, CVE-2022-22706, CVE-2022-38181, CVE-2023-0266, CVE-2022-4262, CVE-2021-30900

Trust: 3.0

Fetched: March 31, 2023, 9:11 a.m., Published: March 27, 2023, 9:19 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: webkit
vendor: apple model: ipad