VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202206-0973, VAR-202206-0004

Trust: 5.25

Fetched: Nov. 13, 2022, 9:11 a.m., Published: Sept. 16, 2022, 1 p.m.
Vulnerabilities: command injection, injection attack, code execution...
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo model: firewall
vendor: tenda model: router
vendor: tenda model: ac18
vendor: palo alto networks model: networks
vendor: palo alto networks model: firewall
db: NVD ids: CVE-2022-31446, CVE-2022-26134, CVE-2022-34265, CVE-2022-0332

Trust: 4.25

Fetched: Nov. 13, 2022, 9:10 a.m., Published: Sept. 14, 2022, midnight
Vulnerabilities: information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2022-37959

Trust: 3.75

Fetched: Nov. 13, 2022, 9:10 a.m., Published: Nov. 11, 2022, midnight
Vulnerabilities: account lockout
Affected productsExternal IDs
db: NVD ids: CVE-2022-40903

Trust: 3.75

Fetched: Nov. 11, 2022, 9:30 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: zoom model: zoom client
vendor: zoom model: client
db: NVD ids: CVE-2022-28762

Trust: 5.0

Fetched: Nov. 11, 2022, 9:30 a.m., Published: Nov. 1, 2022, 11:39 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-3602, CVE-2022-3786
Related entries in the VARIoT vulnerabilities database: VAR-202211-0998, VAR-202211-0882, VAR-202211-0767

Trust: 3.75

Fetched: Nov. 11, 2022, 9:29 a.m., Published: Nov. 10, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: citrix systems model: gateway
vendor: citrix model: gateway
db: NVD ids: CVE-2022-27513, CVE-2022-27516, CVE-2022-27510
Related entries in the VARIoT vulnerabilities database: VAR-202210-0198

Trust: 4.0

Fetched: Nov. 11, 2022, 9:28 a.m., Published: Nov. 11, 2022, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2022-40684

Trust: 3.75

Fetched: Nov. 11, 2022, 9:28 a.m., Published: Nov. 2, 2022, 9:49 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: android

Trust: 3.75

Fetched: Nov. 11, 2022, 9:26 a.m., Published: Nov. 11, 2022, 3:34 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: system
vendor: lenovo model: updates
db: NVD ids: CVE-2022-3431, CVE-2022-3432, CVE-2022-3430

Trust: 3.75

Fetched: Nov. 11, 2022, 9:26 a.m., Published: Nov. 11, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: bios
vendor: lenovo model: system
vendor: lenovo model: notebook
db: NVD ids: CVE-2022-3431, CVE-2022-3432, CVE-2022-3430

Trust: 3.25

Fetched: Nov. 11, 2022, 9:26 a.m., Published: Nov. 9, 2022, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs

Trust: 3.5

Fetched: Nov. 11, 2022, 9:25 a.m., Published: Nov. 10, 2022, 1:09 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: notebook

Trust: 4.25

Fetched: Nov. 11, 2022, 9:25 a.m., Published: Oct. 31, 2022, 7 a.m.
Vulnerabilities: command injection, code execution
Affected productsExternal IDs
vendor: palo alto networks model: networks
vendor: palo alto networks model: firewall
vendor: tesla model: model
vendor: palo model: networks
vendor: palo model: firewall

Trust: 5.0

Fetched: Nov. 11, 2022, 9:24 a.m., Published: Nov. 10, 2022, 5:05 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: adaptive security appliance software
vendor: cisco model: cisco adaptive security appliance software
vendor: cisco model: firepower
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower management center
vendor: cisco model: firepower threat defense
vendor: cisco model: cisco firepower management center
vendor: cisco model: asa software
vendor: cisco model: firepower threat defense software

Trust: 3.5

Fetched: Nov. 11, 2022, 9:23 a.m., Published: April 16, 2019, 7:11 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: itunes
vendor: apple model: safari
vendor: apple model: mac os
vendor: paessler model: prtg network monitor
vendor: filezilla model: server
vendor: google model: google chrome
vendor: google model: chrome
vendor: google model: home
Related entries in the VARIoT vulnerabilities database: VAR-202210-0918, VAR-202210-0792, VAR-202210-0849, VAR-202210-1013, VAR-202210-0898, VAR-202210-0815

Trust: 3.75

Fetched: Nov. 11, 2022, 9:22 a.m., Published: Oct. 28, 2022, 2:30 p.m.
Vulnerabilities: path traversal, file inclusion, code execution...
Affected productsExternal IDs
db: NVD ids: CVE-2022-22242, CVE-2022-22244, CVE-2022-22245, CVE-2022-30333, CVE-2022-22241, CVE-2022-22246, CVE-2022-22243

Trust: 4.0

Fetched: Nov. 11, 2022, 9:22 a.m., Published: Nov. 10, 2022, 11:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: yoga
vendor: lenovo model: bios
vendor: lenovo model: updates
vendor: lenovo model: notebook
db: NVD ids: CVE-2022-3431, CVE-2022-3432, CVE-2022-3430

Trust: 4.75

Fetched: Nov. 11, 2022, 9:15 a.m., Published: Nov. 9, 2022, 6 p.m.
Vulnerabilities: code execution, code injection
Affected productsExternal IDs
db: NVD ids: CVE-2022-0902

Trust: 5.5

Fetched: Nov. 11, 2022, 9:15 a.m., Published: Nov. 11, 2022, midnight
Vulnerabilities: command injection, code execution
Affected productsExternal IDs
vendor: netgear model: orbi
vendor: netgear model: rbr50
vendor: netgear model: netgear router
vendor: netgear model: xr300
vendor: netgear model: router
vendor: netgear model: rbr20
vendor: netgear model: rax120
vendor: netgear model: n300
vendor: netgear model: rbs20
vendor: netgear model: r9000
vendor: netgear model: r8900
vendor: netgear model: r6230
vendor: netgear model: netgear n300
vendor: netgear model: r6260
vendor: netgear model: r7000
vendor: netgear model: rbs50
vendor: draytek model: routers
vendor: draytek model: vigor
db: NVD ids: CVE-2022-40620, CVE-2022-40619

Trust: 4.25

Fetched: Nov. 11, 2022, 9:14 a.m., Published: Aug. 21, 2022, 9:39 p.m.
Vulnerabilities: side channel attack, privilege escalation, denial of service...
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: mac os
vendor: apple model: macos
vendor: apple model: webkit
vendor: cisco model: nexus
vendor: jquery model: jquery
vendor: google model: android
vendor: google model: nexus
vendor: google model: chrome
db: NVD ids: CVE-2022-26923, CVE-2022-22587, CVE-2022-32893, CVE-2022-22674, CVE-2022-21971, CVE-2017-15944, CVE-2022-32894, CVE-2022-22620, CVE-2022-22675, CVE-2022-2856, CVE-2022-22536