VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202205-0394

Trust: 3.75

Fetched: June 1, 2022, 8:16 a.m., Published: June 2, 2022, midnight
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2022-22972, CVE-2022-22954, CVE-2022-22973, CVE-2022-22960, CVE-2022-1388

Trust: 3.75

Fetched: June 1, 2022, 8:16 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: l340-15iwl
vendor: lenovo model: l340-15irh
vendor: lenovo model: l340-17irh
vendor: lenovo model: bios
vendor: lenovo model: notebook
vendor: lenovo model: l340-17iwl
vendor: lenovo model: yoga
db: NVD ids: CVE-2021-3972, CVE-2021-3971, CVE-2021-3970

Trust: 3.0

Fetched: June 1, 2022, 8:16 a.m., Published: April 20, 2022, 9 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: desktop

Trust: 3.0

Fetched: June 1, 2022, 8:16 a.m., Published: May 17, 2022, 7:20 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: iphone

Trust: 5.0

Fetched: June 1, 2022, 8:16 a.m., Published: May 25, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
Related entries in the VARIoT vulnerabilities database: VAR-202203-0237

Trust: 5.25

Fetched: June 1, 2022, 8:16 a.m., Published: May 3, 2022, 11:07 a.m.
Vulnerabilities: code execution, memory corruption
Affected productsExternal IDs
vendor: aruba model: web management portal
vendor: extremenetworks model: ers3500
db: NVD ids: CVE-2022-29861, CVE-2022-29860, CVE-2022-22805, CVE-2022-23677, CVE-2022-23676
Related entries in the VARIoT vulnerabilities database: VAR-202203-1506

Trust: 3.5

Fetched: June 1, 2022, 8:16 a.m., Published: March 31, 2022, 10:09 p.m.
Vulnerabilities: code execution, denial of service, information exposure
Affected productsExternal IDs
db: NVD ids: CVE-2022-22950, CVE-2022-22965, CVE-2022-22695, CVE-2022-22963

Trust: 4.5

Fetched: June 1, 2022, 8:16 a.m., Published: April 20, 2022, 10:14 a.m.
Vulnerabilities: code execution, privilege escalation, memory corruption
Affected productsExternal IDs
vendor: dell model: bios
vendor: lenovo model: system
vendor: lenovo model: yoga
vendor: lenovo model: flex
vendor: lenovo model: bios
vendor: lenovo model: notebook
db: NVD ids: CVE-2021-3972, CVE-2021-3971, CVE-2021-3970

Trust: 4.75

Fetched: June 1, 2022, 8:16 a.m., Published: April 23, 2022, 3:51 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: watch
vendor: check point model: check point
Related entries in the VARIoT vulnerabilities database: VAR-202203-0043

Trust: 3.75

Fetched: June 1, 2022, 8:16 a.m., Published: March 9, 2022, 2:16 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
vendor: samsung model: samsung galaxy
vendor: samsung model: galaxy
vendor: samsung model: notes
vendor: samsung model: exynos
vendor: samsung model: samsung
db: NVD ids: CVE-2022-0847
Related entries in the VARIoT vulnerabilities database: VAR-202107-1010

Trust: 4.5

Fetched: May 13, 2022, 10:50 a.m., Published: March 21, 2022, 6:09 p.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
vendor: cisco model: router
db: NVD ids: CVE-2021-34527, CVE-2021-36958

Trust: 3.5

Fetched: May 13, 2022, 10:50 a.m., Published: May 21, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: mobile
vendor: samsung model: galaxy s8
vendor: samsung model: samsung galaxy
vendor: google model: android
db: NVD ids: CVE-2021-25444, CVE-2021-25490

Trust: 5.5

Fetched: May 13, 2022, 10:50 a.m., Published: April 21, 2022, midnight
Vulnerabilities: code execution, buffer overflow, denial of service
Affected productsExternal IDs
vendor: codesys model: codesys
vendor: codesys model: control
vendor: cisco model: router
vendor: cisco model: series
db: NVD ids: CVE-2021-21967, CVE-2021-21965, CVE-2021-21962, CVE-2021-21959, CVE-2021-21960, CVE-2021-21964, CVE-2021-21961
Related entries in the VARIoT vulnerabilities database: VAR-202108-1890, VAR-202203-0235, VAR-202203-0237, VAR-202203-0236

Trust: 4.25

Fetched: May 13, 2022, 10:50 a.m., Published: March 8, 2022, 1 p.m.
Vulnerabilities: code execution, buffer overflow, authentication bypass...
Affected productsExternal IDs
vendor: schneider model: monitor
vendor: schneider electric model: monitor
db: NVD ids: CVE-2021-37160, CVE-2022-0715, CVE-2022-22805, CVE-2022-22806
Related entries in the VARIoT vulnerabilities database: VAR-202203-0043

Trust: 4.25

Fetched: May 13, 2022, 10:50 a.m., Published: April 10, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: samsung galaxy
db: NVD ids: CVE-2022-0847
Related entries in the VARIoT vulnerabilities database: VAR-202201-0567, VAR-202201-0322, VAR-202201-0561

Trust: 5.75

Fetched: May 13, 2022, 10:50 a.m., Published: Jan. 27, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: watch
vendor: apple model: webkit
vendor: apple model: tvos
vendor: apple model: macos
vendor: apple model: watchos
db: NVD ids: CVE-2022-22590, CVE-2022-22584, CVE-2022-22587

Trust: 4.75

Fetched: May 13, 2022, 10:50 a.m., Published: April 7, 2022, midnight
Vulnerabilities: code execution, directory traversal, information disclosure...
Affected productsExternal IDs
db: NVD ids: CVE-2022-25250, CVE-2022-25247, CVE-2022-25248, CVE-2022-25246, CVE-2022-25252, CVE-2022-25251, CVE-2022-25249

Trust: 4.5

Fetched: May 13, 2022, 10:50 a.m., Published: Jan. 17, 2022, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: samsung model: samsung mobile
vendor: samsung model: mobile
db: NVD ids: CVE-2020-26141, CVE-2021-25391, CVE-2020-11264, CVE-2020-26144, CVE-2021-25400, CVE-2021-25377, CVE-2020-26145, CVE-2020-26146, CVE-2021-25392, CVE-2020-26147, CVE-2021-25388, CVE-2021-25390, CVE-2021-25413, CVE-2020-24586, CVE-2021-25356, CVE-2021-25397, CVE-2020-24588, CVE-2021-25426, CVE-2021-25404, CVE-2021-25393, CVE-2021-25414, CVE-2020-26139, CVE-2021-25401, CVE-2021-25379, CVE-2020-11301, CVE-2020-26142, CVE-2020-26143, CVE-2020-26140, CVE-2021-25410, CVE-2021-25440, CVE-2020-24587
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566, VAR-202203-1506

Trust: 3.5

Fetched: May 13, 2022, 10:50 a.m., Published: April 12, 2022, 7:35 a.m.
Vulnerabilities: code execution, information leak
Affected productsExternal IDs
db: NVD ids: CVE-2022-22963, CVE-2021-44228, CVE-2022-22965
Related entries in the VARIoT vulnerabilities database: VAR-201908-0712, VAR-201702-0856, VAR-202006-0328, VAR-201702-0080

Trust: 5.5

Fetched: May 13, 2022, 10:50 a.m., Published: March 10, 2022, 4:59 a.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo alto networks model: networks
db: NVD ids: CVE-2019-12255, CVE-2016-9355, CVE-2020-12040, CVE-2016-8375