VARIoT news about IoT security

Trust: 3.0

Fetched: Jan. 8, 2023, 9:13 a.m., Published: Jan. 4, 2023, 12:32 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: thinkpad
vendor: lenovo model: bios

Trust: 3.5

Fetched: Jan. 8, 2023, 9:13 a.m., Published: April 15, 2021, 4 p.m.
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs

Trust: 3.75

Fetched: Jan. 8, 2023, 9:12 a.m., Published: Jan. 5, 2023, midnight
Vulnerabilities: sql injection
Affected productsExternal IDs

Trust: 3.75

Fetched: Jan. 6, 2023, 9:19 a.m., Published: Dec. 29, 2022, 6:55 p.m.
Vulnerabilities: denial of service, buffer overflow, code execution
Affected productsExternal IDs
vendor: netgear model: netgear router
vendor: netgear model: orbi
vendor: netgear model: rax40
vendor: netgear model: rax35
vendor: netgear model: router
vendor: netgear model: r7000p
vendor: netgear model: r8000p firmware
vendor: netgear model: r6700v3
vendor: netgear model: rax40 firmware
vendor: netgear model: r7000p firmware
vendor: netgear model: r8000p
vendor: netgear model: r6400v2
vendor: netgear model: r6900p
vendor: netgear model: r6900p firmware

Trust: 3.75

Fetched: Jan. 6, 2023, 9:19 a.m., Published: Dec. 6, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: samsung model: note
vendor: samsung model: mobile
vendor: samsung model: galaxy
vendor: samsung model: samsung galaxy
vendor: comcast model: xfinity
Related entries in the VARIoT vulnerabilities database: VAR-202212-1132

Trust: 3.25

Fetched: Jan. 6, 2023, 9:17 a.m., Published: June 16, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-42475
Related entries in the VARIoT vulnerabilities database: VAR-202301-0628, VAR-202301-0582, VAR-202301-0521

Trust: 3.75

Fetched: Jan. 6, 2023, 9:17 a.m., Published: Jan. 5, 2023, 1:36 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: bios
vendor: lenovo model: thinkpad
vendor: lenovo model: updates
db: NVD ids: CVE-2022-33218, CVE-2022-33219, CVE-2022-33265, CVE-2022-40516, CVE-2022-40520

Trust: 5.0

Fetched: Jan. 6, 2023, 9:16 a.m., Published: Jan. 4, 2023, midnight
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: brocade model: fabric os
vendor: brocade model: brocade fabric os

Trust: 3.5

Fetched: Jan. 6, 2023, 9:15 a.m., Published: Dec. 25, 2022, midnight
Vulnerabilities: cross-site scripting, sql injection, weak password
Affected productsExternal IDs
vendor: sophos model: firewall
vendor: cisco model: routers
vendor: cisco model: guard
vendor: cisco model: umbrella

Trust: 3.0

Fetched: Jan. 6, 2023, 9:15 a.m., Published: Jan. 2, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
Related entries in the VARIoT vulnerabilities database: VAR-202301-0249

Trust: 4.75

Fetched: Jan. 6, 2023, 9:14 a.m., Published: Jan. 6, 2023, midnight
Vulnerabilities: memory corruption, buffer overflow, code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2022-42720, CVE-2022-42721, CVE-2022-42719, CVE-2022-22088, CVE-2022-41674

Trust: 5.5

Fetched: Jan. 6, 2023, 9:13 a.m., Published: -
Vulnerabilities: privilege escalation, information disclosure, code execution
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
db: NVD ids: CVE-2022-20411, CVE-2022-20472, CVE-2022-20473, CVE-2022-20498
Related entries in the VARIoT vulnerabilities database: VAR-202212-0864

Trust: 4.5

Fetched: Jan. 6, 2023, 9:13 a.m., Published: Dec. 23, 2022, 4:05 p.m.
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: essential model: phone
vendor: cisco model: series
vendor: cisco model: ip phone
vendor: cisco model: link layer discovery protocol
vendor: cisco model: ip phone series
vendor: cisco model: voice vlan
vendor: cisco model: ip phone 7800
db: NVD ids: CVE-2022-20968
Related entries in the VARIoT vulnerabilities database: VAR-202301-0249

Trust: 4.75

Fetched: Jan. 6, 2023, 9:13 a.m., Published: Jan. 5, 2023, 2:34 p.m.
Vulnerabilities: memory corruption, buffer overflow, code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2022-42720, CVE-2022-42721, CVE-2022-42719, CVE-2022-22088, CVE-2022-41674

Trust: 3.75

Fetched: Jan. 6, 2023, 9:12 a.m., Published: Dec. 23, 2022, 10:07 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco firepower management center
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense
vendor: cisco model: firepower threat defense software
vendor: cisco model: firepower management center
vendor: cisco model: asa software
Related entries in the VARIoT vulnerabilities database: VAR-202301-0205, VAR-202301-0235, VAR-202301-0230, VAR-202301-0249

Trust: 4.25

Fetched: Jan. 6, 2023, 9:11 a.m., Published: Jan. 6, 2023, midnight
Vulnerabilities: information disclosure, denial of service, code execution
Affected productsExternal IDs
vendor: samsung model: mobile
vendor: samsung model: notes
vendor: huawei model: huawei
vendor: google model: pixel
vendor: google model: android
vendor: motorola model: android
vendor: motorola model: motorola
db: NVD ids: CVE-2022-20235, CVE-2022-33286, CVE-2023-20916, CVE-2022-20493, CVE-2022-33266, CVE-2022-44429, CVE-2022-33285, CVE-2022-44430, CVE-2022-33252, CVE-2023-20904, CVE-2022-44436, CVE-2023-20913, CVE-2022-33255, CVE-2022-32636, CVE-2022-33283, CVE-2022-20456, CVE-2023-20912, CVE-2022-20494, CVE-2023-20922, CVE-2023-20921, CVE-2022-44438, CVE-2022-25746, CVE-2021-35134, CVE-2022-20492, CVE-2023-20919, CVE-2022-44426, CVE-2022-44425, CVE-2022-32637, CVE-2022-20489, CVE-2022-33253, CVE-2023-20920, CVE-2022-20461, CVE-2023-20918, CVE-2022-23960, CVE-2023-20908, CVE-2022-44434, CVE-2022-33276, CVE-2022-20490, CVE-2023-20905, CVE-2022-44427, CVE-2021-35097, CVE-2022-33284, CVE-2023-20915, CVE-2022-44435, CVE-2022-44428, CVE-2022-32635, CVE-2022-44432, CVE-2022-44437, CVE-2021-35113, CVE-2022-25725, CVE-2022-44431, CVE-2022-22088, CVE-2022-33274
Related entries in the VARIoT vulnerabilities database: VAR-202211-1139

Trust: 3.25

Fetched: Jan. 4, 2023, 9:16 a.m., Published: Jan. 1, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-41622

Trust: 3.75

Fetched: Jan. 4, 2023, 9:15 a.m., Published: Jan. 3, 2023, 10:02 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: google home
vendor: google model: home
vendor: google model: android

Trust: 4.25

Fetched: Jan. 4, 2023, 9:15 a.m., Published: Dec. 19, 2022, 9:02 a.m.
Vulnerabilities: improper access control
Affected productsExternal IDs
db: NVD ids: CVE-2022-31708, CVE-2022-31707