VARIoT news about IoT security

Trust: 3.25

Fetched: Dec. 27, 2022, 9:27 a.m., Published: May 6, 2022, midnight
Vulnerabilities: buffer overflow
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202212-1290, VAR-202205-1302

Trust: 5.0

Fetched: Dec. 27, 2022, 9:27 a.m., Published: Dec. 19, 2022, 7:59 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: macos
db: NVD ids: CVE-2022-42821, CVE-2022-26706

Trust: 4.0

Fetched: Dec. 27, 2022, 9:26 a.m., Published: Dec. 19, 2022, 9:29 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: comcast model: xfinity
Related entries in the VARIoT vulnerabilities database: VAR-202110-1690, VAR-201903-1398, VAR-201712-0828

Trust: 4.75

Fetched: Dec. 27, 2022, 9:26 a.m., Published: Dec. 25, 2022, 4:40 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: d-link model: dsl-2750b
vendor: tenda model: ac1200
db: NVD ids: CVE-2022-30023, CVE-2022-33891, CVE-2021-42013, CVE-2022-31137, CVE-2019-10655, CVE-2017-17105, CVE-2020-25223
Related entries in the VARIoT vulnerabilities database: VAR-202212-0864

Trust: 4.5

Fetched: Dec. 27, 2022, 9:25 a.m., Published: -
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco model: link layer discovery protocol
vendor: cisco model: ip phone
vendor: cisco model: ip phone 7800
vendor: cisco model: series
db: NVD ids: CVE-2022-20968
Related entries in the VARIoT vulnerabilities database: VAR-202212-0864

Trust: 4.5

Fetched: Dec. 27, 2022, 9:25 a.m., Published: -
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco model: link layer discovery protocol
vendor: cisco model: ip phone
vendor: cisco model: ip phone 7800
vendor: cisco model: series
db: NVD ids: CVE-2022-20968

Trust: 3.0

Fetched: Dec. 27, 2022, 9:24 a.m., Published: Dec. 27, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs

Trust: 3.0

Fetched: Dec. 27, 2022, 9:24 a.m., Published: Dec. 19, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
Related entries in the VARIoT vulnerabilities database: VAR-202011-1361, VAR-202011-1387, VAR-202011-0064

Trust: 5.0

Fetched: Dec. 27, 2022, 9:23 a.m., Published: Dec. 1, 2022, midnight
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: siemens model: simatic ipc847e
vendor: siemens model: simatic ipc477e pro
vendor: siemens model: simatic ipc427e
vendor: siemens model: simatic et 200sp open controller
vendor: siemens model: simatic drive controller family
vendor: siemens model: simatic et
vendor: siemens model: simatic itp1000
vendor: siemens model: sinumerik 840d sl
vendor: siemens model: simatic ipc547g
vendor: siemens model: simatic et 200sp open
vendor: siemens model: et 200sp open controller
vendor: siemens model: sinumerik 840d
vendor: siemens model: simatic et 200sp open controller cpu 1515sp pc2
vendor: siemens model: 840d
vendor: siemens model: simatic ipc647e
vendor: siemens model: simatic ipc477e
vendor: siemens model: simatic ipc677e
vendor: siemens model: sinumerik 828d
vendor: siemens model: simatic ipc627e
vendor: siemens model: simatic field pg m5
vendor: siemens model: simatic et 200sp
vendor: siemens model: simatic
vendor: siemens model: simatic ipc127e
db: NVD ids: CVE-2020-8698, CVE-2020-8745, CVE-2020-0590, CVE-2020-8694
Related entries in the VARIoT vulnerabilities database: VAR-202209-0759, VAR-202212-1751

Trust: 3.75

Fetched: Dec. 27, 2022, 9:23 a.m., Published: May 27, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: icloud
vendor: apple model: ipad
vendor: apple model: safari
vendor: apple model: iphone
vendor: apple model: webkit
vendor: apple model: tvos
db: NVD ids: CVE-2022-32917, CVE-2022-42856

Trust: 5.5

Fetched: Dec. 27, 2022, 9:22 a.m., Published: Dec. 10, 2022, 9:14 a.m.
Vulnerabilities: information disclosure, code execution
Affected productsExternal IDs
vendor: google model: android
vendor: samsung model: android phone
vendor: samsung model: mobile
vendor: samsung model: mobile devices
db: NVD ids: CVE-2022-20472, CVE-2022-20498, CVE-2022-20411, CVE-2022-20473
Related entries in the VARIoT vulnerabilities database: VAR-202210-0997, VAR-202210-1070

Trust: 4.5

Fetched: Dec. 27, 2022, 9:22 a.m., Published: Nov. 30, 2022, noon
Vulnerabilities: authentication bypass, code execution, buffer overflow
Affected productsExternal IDs
vendor: samsung model: galaxy
vendor: apple model: macos
vendor: apple model: iphone
vendor: google model: google chrome
vendor: google model: chrome
vendor: google model: pixel
vendor: google model: android
vendor: google model: wifi
db: NVD ids: CVE-2022-4135, CVE-2022-41091, CVE-2022-3886, CVE-2022-3885, CVE-2022-45404, CVE-2022-20463, CVE-2022-3889, CVE-2022-31685, CVE-2022-31686, CVE-2022-40303, CVE-2022-40304, CVE-2022-2209, CVE-2022-41128, CVE-2022-3887, CVE-2022-41125, CVE-2022-41073, CVE-2022-3888, CVE-2022-3890

Trust: 3.0

Fetched: Dec. 27, 2022, 9:22 a.m., Published: Dec. 10, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-4228, CVE-2021-44467, CVE-2021-26728

Trust: 4.5

Fetched: Dec. 27, 2022, 9:21 a.m., Published: Dec. 9, 2022, 3:31 p.m.
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco systems model: ip phone 7800
vendor: cisco systems model: series
vendor: cisco systems model: voice vlan
vendor: cisco systems model: wireless ip phone 8821
vendor: cisco systems model: ip phone
vendor: cisco systems model: ip phones
vendor: cisco systems model: ip phone 8821
vendor: cisco model: ip phone 7800
vendor: cisco model: series
vendor: cisco model: voice vlan
vendor: cisco model: wireless ip phone 8821
vendor: cisco model: ip phone
vendor: cisco model: ip phones
vendor: cisco model: ip phone 8821
Related entries in the VARIoT vulnerabilities database: VAR-202212-0864

Trust: 4.5

Fetched: Dec. 27, 2022, 9:21 a.m., Published: -
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco model: link layer discovery protocol
vendor: cisco model: ip phone
vendor: cisco model: ip phone 7800
vendor: cisco model: series
db: NVD ids: CVE-2022-20968

Trust: 5.75

Fetched: Dec. 27, 2022, 9:20 a.m., Published: Dec. 13, 2022, 1:27 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: palo alto networks model: networks
vendor: citrix model: application delivery controller
vendor: citrix model: gateway
vendor: palo model: networks
db: NVD ids: CVE-2022-27518
Related entries in the VARIoT vulnerabilities database: VAR-202212-0864

Trust: 5.5

Fetched: Dec. 27, 2022, 9:19 a.m., Published: Dec. 10, 2022, 2 a.m.
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco model: ip phone 7800 series
vendor: cisco model: ip phone 7800
vendor: cisco model: ip phone 8800 series
vendor: cisco model: series
vendor: cisco model: voice vlan
vendor: cisco model: ip phone 8800
vendor: cisco model: wireless ip phone 8821
vendor: cisco model: ip phone
vendor: cisco model: ip phone 8821
db: NVD ids: CVE-2022-20968

Trust: 3.75

Fetched: Dec. 27, 2022, 9:19 a.m., Published: Dec. 27, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: codesys model: codesys
vendor: codesys model: runtime
db: NVD ids: CVE-2022-22515, CVE-2022-3270, CVE-2022-4048, CVE-2022-3079, CVE-2022-31806
Related entries in the VARIoT vulnerabilities database: VAR-202101-1926

Trust: 4.5

Fetched: Dec. 27, 2022, 9:11 a.m., Published: Jan. 26, 2021, 6:09 p.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: perl model: perl
vendor: todd model: sudo
db: NVD ids: CVE-2021-3156

Trust: 3.25

Fetched: Dec. 25, 2022, 9:23 a.m., Published: Dec. 17, 2022, 6:54 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-45141, CVE-2022-37967, CVE-2022-37966, CVE-2022-38023