VARIoT news about IoT security

Trust: 5.5

Fetched: Feb. 22, 2023, 9:08 a.m., Published: Jan. 27, 2023, 7:08 p.m.
Vulnerabilities: command injection, string attack
Affected productsExternal IDs
db: NVD ids: CVE-2022-46169
Related entries in the VARIoT vulnerabilities database: VAR-202206-0004, VAR-202002-1447, VAR-202006-1056

Trust: 5.75

Fetched: Feb. 22, 2023, 9:08 a.m., Published: Feb. 18, 2023, 11:23 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: draytek model: vigor
db: NVD ids: CVE-2019-15107, CVE-2022-4257, CVE-2022-26134, CVE-2012-4869, CVE-2020-8515, CVE-2020-15415
Related entries in the VARIoT vulnerabilities database: VAR-202211-1679, VAR-202211-1570

Trust: 5.75

Fetched: Feb. 22, 2023, 9:07 a.m., Published: Feb. 22, 2023, 5:38 a.m.
Vulnerabilities: code execution, authentication bypass, information disclosure...
Affected productsExternal IDs
vendor: mitel model: mivoice connect
db: NVD ids: CVE-2022-26377, CVE-2023-0669, CVE-2022-40765, CVE-2022-41223, CVE-2022-47986, CVE-2022-31813
Related entries in the VARIoT vulnerabilities database: VAR-202302-2045, VAR-202302-2240

Trust: 4.75

Fetched: Feb. 22, 2023, 9:07 a.m., Published: Feb. 16, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: iphone
db: NVD ids: CVE-2023-23530, CVE-2023-23531

Trust: 5.0

Fetched: Feb. 22, 2023, 9:06 a.m., Published: Feb. 18, 2023, 8:42 p.m.
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: palo model: networks

Trust: 3.75

Fetched: Feb. 22, 2023, 9:06 a.m., Published: Feb. 9, 2022, 5:54 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202302-2045, VAR-202302-2240

Trust: 5.75

Fetched: Feb. 22, 2023, 9:05 a.m., Published: Feb. 16, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: iphone
db: NVD ids: CVE-2023-23530, CVE-2023-23531

Trust: 4.75

Fetched: Feb. 22, 2023, 9:04 a.m., Published: Feb. 21, 2023, midnight
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: ipad
vendor: apple model: macos
vendor: apple model: iphone
vendor: apple model: icloud

Trust: 3.5

Fetched: Feb. 22, 2023, 9:04 a.m., Published: Jan. 27, 2023, 4:06 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-23560

Trust: 3.75

Fetched: Feb. 22, 2023, 9:04 a.m., Published: Feb. 15, 2023, 8:15 p.m.
Vulnerabilities: entity injection
Affected productsExternal IDs
vendor: clamav model: clamav
vendor: cisco model: clamav
Related entries in the VARIoT vulnerabilities database: VAR-202006-1056, VAR-202002-1447, VAR-202206-0004

Trust: 6.0

Fetched: Feb. 21, 2023, 9:17 a.m., Published: Feb. 21, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: draytek model: vigor
db: NVD ids: CVE-2020-15415, CVE-2020-8515, CVE-2012-4869, CVE-2022-4257, CVE-2022-26134, CVE-2019-15107
Related entries in the VARIoT vulnerabilities database: VAR-202302-1097

Trust: 5.0

Fetched: Feb. 21, 2023, 9:16 a.m., Published: Feb. 14, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: macos
vendor: apple model: iphone
db: NVD ids: CVE-2023-23529

Trust: 5.0

Fetched: Feb. 21, 2023, 9:15 a.m., Published: Feb. 20, 2023, 1:23 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: draytek model: vigor
db: NVD ids: CVE-2022-46169

Trust: 3.0

Fetched: Feb. 21, 2023, 9:14 a.m., Published: Feb. 2, 2023, 10:57 a.m.
Vulnerabilities: code execution, code injection
Affected productsExternal IDs

Trust: 4.75

Fetched: Feb. 21, 2023, 9:14 a.m., Published: Feb. 20, 2023, 1:57 p.m.
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2022-45701

Trust: 3.75

Fetched: Feb. 21, 2023, 9:14 a.m., Published: Feb. 20, 2023, 1:54 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: samsung model: samsung galaxy
vendor: samsung model: galaxy
vendor: samsung model: gallery
vendor: samsung model: knox
vendor: samsung model: mobile devices
vendor: samsung model: mobile
vendor: google model: android
Related entries in the VARIoT vulnerabilities database: VAR-202302-1169, VAR-202302-1097, VAR-202302-1170

Trust: 5.5

Fetched: Feb. 21, 2023, 9:13 a.m., Published: Feb. 15, 2023, 11:48 a.m.
Vulnerabilities: use after free
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: macos
vendor: apple model: webkit
vendor: apple model: iphone
vendor: apple model: ipad
vendor: apple model: ipad air
db: NVD ids: CVE-2023-23514, CVE-2023-23529, CVE-2023-23522

Trust: 4.5

Fetched: Feb. 19, 2023, 9:29 a.m., Published: -
Vulnerabilities: default credentials, command injection, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-45701

Trust: 4.0

Fetched: Feb. 19, 2023, 9:29 a.m., Published: Feb. 15, 2023, 11:11 a.m.
Vulnerabilities: privilege escalation, file upload bug, code injection...
Affected productsExternal IDs
db: NVD ids: CVE-2023-0020, CVE-2023-24523, CVE-2023-24530

Trust: 4.0

Fetched: Feb. 19, 2023, 9:28 a.m., Published: Feb. 13, 2001, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: iphone
vendor: apple model: webkit
vendor: apple model: icloud