VARIoT news about IoT security

Trust: 4.25

Fetched: Nov. 11, 2022, 9:14 a.m., Published: Aug. 21, 2022, 9:39 p.m.
Vulnerabilities: side channel attack, privilege escalation, denial of service...
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: mac os
vendor: apple model: macos
vendor: apple model: webkit
vendor: cisco model: nexus
vendor: jquery model: jquery
vendor: google model: android
vendor: google model: nexus
vendor: google model: chrome
db: NVD ids: CVE-2022-26923, CVE-2022-22587, CVE-2022-32893, CVE-2022-22674, CVE-2022-21971, CVE-2017-15944, CVE-2022-32894, CVE-2022-22620, CVE-2022-22675, CVE-2022-2856, CVE-2022-22536

Trust: 4.0

Fetched: Nov. 11, 2022, 9:13 a.m., Published: Nov. 5, 2022, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 5.5

Fetched: Nov. 11, 2022, 9:12 a.m., Published: Nov. 1, 2022, midnight
Vulnerabilities: path traversal, directory traversal, code execution...
Affected productsExternal IDs
vendor: rockwell automation model: automation stratix
vendor: rockwell model: automation stratix
vendor: cisco model: industrial ethernet
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco iox application
vendor: cisco model: iox application
vendor: cisco model: ios software
vendor: cisco model: cisco iox
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
db: NVD ids: CVE-2020-3211, CVE-2020-3516, CVE-2021-1446, CVE-2020-3218, CVE-2020-3209, CVE-2020-3219, CVE-2021-1385, CVE-2020-3200, CVE-2020-3229

Trust: 3.75

Fetched: Nov. 11, 2022, 9:10 a.m., Published: Oct. 11, 2017, midnight
Vulnerabilities: integer overflow, memory corruption, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2013-3940

Trust: 4.75

Fetched: Nov. 11, 2022, 9:10 a.m., Published: Sept. 15, 2022, midnight
Vulnerabilities: memory corruption, code execution
Affected productsExternal IDs
vendor: asus model: asus
db: NVD ids: CVE-2022-31646, CVE-2022-31645, CVE-2022-31641, CVE-2022-31644, CVE-2022-31640, CVE-2022-23930

Trust: 3.0

Fetched: Nov. 9, 2022, 1:46 p.m., Published: March 9, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 3.75

Fetched: Nov. 9, 2022, 1:46 p.m., Published: -
Vulnerabilities: application crash, code execution, buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2022-3602, CVE-2022-3786
Related entries in the VARIoT vulnerabilities database: VAR-202211-0352, VAR-202211-0485

Trust: 5.75

Fetched: Nov. 9, 2022, 1:45 p.m., Published: Nov. 4, 2022, 12:03 p.m.
Vulnerabilities: request forgery, cross-site request forgery, improper access control...
Affected productsExternal IDs
vendor: cisco model: cisco email security appliance
vendor: cisco model: email security appliance
vendor: cisco model: cisco identity services engine
vendor: cisco model: identity services engine
db: NVD ids: CVE-2022-20961, CVE-2022-20956

Trust: 3.75

Fetched: Nov. 9, 2022, 1:44 p.m., Published: Nov. 9, 2022, 11:17 a.m.
Vulnerabilities: access control vulnerability, authentication bypass, session fixation...
Affected productsExternal IDs
db: NVD ids: CVE-2022-31686, CVE-2022-31689, CVE-2022-31685, CVE-2022-31688, CVE-2022-31687

Trust: 3.75

Fetched: Nov. 9, 2022, 1:44 p.m., Published: Nov. 7, 2022, 6:28 a.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: trend model: security
Related entries in the VARIoT vulnerabilities database: VAR-202211-0352

Trust: 5.75

Fetched: Nov. 9, 2022, 1:43 p.m., Published: Nov. 8, 2022, midnight
Vulnerabilities: request forgery, cross-site request forgery
Affected productsExternal IDs
vendor: cisco model: cisco identity services engine
vendor: cisco model: identity services engine
db: NVD ids: CVE-2022-20961

Trust: 5.25

Fetched: Nov. 9, 2022, 1:43 p.m., Published: Nov. 2, 2022, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: google model: android

Trust: 4.0

Fetched: Nov. 9, 2022, 1:43 p.m., Published: Nov. 5, 2022, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202210-1624

Trust: 3.75

Fetched: Nov. 9, 2022, 1:41 p.m., Published: Nov. 9, 2035, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: ipad air
vendor: apple model: iphone
db: NVD ids: CVE-2022-42827

Trust: 3.0

Fetched: Nov. 9, 2022, 1:41 p.m., Published: Aug. 19, 2022, 3:25 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: iphone
vendor: apple model: macos
vendor: apple model: ipad air

Trust: 4.5

Fetched: Nov. 9, 2022, 1:41 p.m., Published: Nov. 1, 2022, midnight
Vulnerabilities: path traversal, command injection, os command injection...
Affected productsExternal IDs
db: NVD ids: CVE-2022-3184, CVE-2022-3186, CVE-2022-3189, CVE-2022-3187, CVE-2022-3188, CVE-2022-3183, CVE-2022-3185

Trust: 4.0

Fetched: Nov. 9, 2022, 1:40 p.m., Published: Nov. 9, 2018, midnight
Vulnerabilities: default password
Affected productsExternal IDs

Trust: 3.25

Fetched: Nov. 8, 2022, 2:11 p.m., Published: Nov. 8, 5545, midnight
Vulnerabilities: sql injection, code injection, command injection...
Affected productsExternal IDs
vendor: symantec model: web security
vendor: node.js model: node.js

Trust: 3.5

Fetched: Nov. 8, 2022, 2:10 p.m., Published: Nov. 8, 2022, 1:27 p.m.
Vulnerabilities: code execution, memory corruption, input validation vulnerability
Affected productsExternal IDs
vendor: google model: android
vendor: samsung model: galaxy note
vendor: samsung model: exynos
vendor: samsung model: galaxy
vendor: samsung model: note

Trust: 3.5

Fetched: Nov. 8, 2022, 2:10 p.m., Published: Nov. 12, 2022, midnight
Vulnerabilities: information exposure
Affected productsExternal IDs
vendor: trend model: antivirus
vendor: trend model: security