VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-201910-0546, VAR-201803-2171, VAR-201910-0547, VAR-201808-0384

Trust: 5.5

Fetched: May 13, 2022, 7:58 a.m., Published: May 13, 2021, midnight
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: mikrotik model: router
vendor: mikrotik model: routeros
vendor: mikrotik model: mikrotik routers
vendor: mikrotik model: routers
db: NVD ids: CVE-2019-3977, CVE-2018-7445, CVE-2019-3978, CVE-2018-14847
Related entries in the VARIoT vulnerabilities database: VAR-202112-0562, VAR-202112-0566

Trust: 3.75

Fetched: May 13, 2022, 7:58 a.m., Published: Jan. 13, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-45046, CVE-2021-44228

Trust: 3.75

Fetched: May 13, 2022, 7:58 a.m., Published: May 17, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: trend model: security
vendor: trend micro model: security

Trust: 4.75

Fetched: May 13, 2022, 7:58 a.m., Published: May 13, 2022, 3:58 p.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
vendor: check point model: check point
db: NVD ids: CVE-2019-0708, CVE-2022-21893, CVE-2019-0887

Trust: 3.0

Fetched: May 13, 2022, 7:58 a.m., Published: May 13, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs

Trust: 3.75

Fetched: May 13, 2022, 7:58 a.m., Published: May 2, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
vendor: trend model: security

Trust: 4.0

Fetched: May 13, 2022, 7:58 a.m., Published: Jan. 13, 2022, midnight
Vulnerabilities: denial of service, code execution, privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2022-21849

Trust: 5.0

Fetched: May 13, 2022, 7:58 a.m., Published: May 10, 2022, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-21840

Trust: 5.25

Fetched: May 13, 2022, 7:58 a.m., Published: Jan. 3, 2022, midnight
Vulnerabilities: information disclosure, command injection, open redirect vulnerability...
Affected productsExternal IDs
vendor: huawei model: hisuite
vendor: huawei model: huawei
vendor: lighttpd model: lighttpd
vendor: google model: wifi
vendor: google model: android
vendor: google model: wi-fi router
vendor: asus model: asus
vendor: asus model: router
vendor: asus model: rt-ax56u
vendor: kaios model: kaios
db: NVD ids: CVE-2021-39987, CVE-2021-43850, CVE-2021-46042, CVE-2021-44591, CVE-2021-24786, CVE-2021-46145, CVE-2021-46144, CVE-2021-30337, CVE-2021-39966, CVE-2022-21662, CVE-2020-15933, CVE-2022-20015, CVE-2021-45832, CVE-2021-25994, CVE-2021-39977, CVE-2021-39978, CVE-2022-20012, CVE-2021-45942, CVE-2021-30270, CVE-2022-20018, CVE-2022-21661, CVE-2021-38918, CVE-2020-5956, CVE-2021-37128, CVE-2021-39988, CVE-2021-39968, CVE-2021-28711, CVE-2021-37111, CVE-2021-37119, CVE-2021-37120, CVE-2021-45833, CVE-2021-46080, CVE-2021-25030, CVE-2021-20872, CVE-2022-20013, CVE-2021-40525, CVE-2022-21644, CVE-2021-44158, CVE-2021-30289, CVE-2022-20014, CVE-2021-46071, CVE-2021-37121, CVE-2021-38674, CVE-2021-37125, CVE-2021-37117, CVE-2021-45969, CVE-2021-39974, CVE-2021-30273, CVE-2021-20148, CVE-2021-1894, CVE-2022-21642, CVE-2021-46041, CVE-2021-24042, CVE-2021-39969, CVE-2021-43832, CVE-2021-40111, CVE-2021-31522, CVE-2021-30282, CVE-2021-46040, CVE-2021-37133, CVE-2021-39143, CVE-2021-42841, CVE-2021-46043, CVE-2021-40110, CVE-2021-43947, CVE-2021-46074, CVE-2022-21652, CVE-2021-46078, CVE-2021-43946, CVE-2022-22293, CVE-2021-39971, CVE-2021-46142, CVE-2021-44590, CVE-2021-39973, CVE-2021-37132, CVE-2021-45452, CVE-2022-20020, CVE-2021-20871, CVE-2021-38542, CVE-2022-20021, CVE-2021-39970, CVE-2021-37098, CVE-2021-31833, CVE-2021-39972, CVE-2022-20022, CVE-2021-46039, CVE-2021-30298, CVE-2021-25020, CVE-2021-45457, CVE-2021-46044, CVE-2021-24893, CVE-2021-24831, CVE-2021-37118, CVE-2021-1918, CVE-2021-30272, CVE-2021-30335, CVE-2021-30351, CVE-2021-45829, CVE-2021-44168, CVE-2021-45972, CVE-2022-21664, CVE-2021-46076, CVE-2022-0083, CVE-2021-41388, CVE-2021-39990, CVE-2021-36738, CVE-2021-45115, CVE-2021-46075, CVE-2021-45912, CVE-2022-20016, CVE-2021-37113, CVE-2021-30275, CVE-2021-30276, CVE-2021-3845, CVE-2021-45916, CVE-2021-37110, CVE-2021-43045, CVE-2021-45960, CVE-2021-20868, CVE-2021-43852, CVE-2020-27428, CVE-2021-30267, CVE-2021-39989, CVE-2021-20869, CVE-2021-39981, CVE-2021-39967, CVE-2021-39975, CVE-2021-36774, CVE-2022-0080, CVE-2021-46143, CVE-2021-44674, CVE-2021-39984, CVE-2021-41043, CVE-2022-20023, CVE-2021-45830, CVE-2021-37116, CVE-2021-45456, CVE-2021-20870, CVE-2021-35093, CVE-2021-37126, CVE-2021-45913, CVE-2021-46073, CVE-2021-43711, CVE-2021-25981, CVE-2021-46067, CVE-2021-45970, CVE-2022-0122, CVE-2021-25743, CVE-2021-30262, CVE-2021-36751, CVE-2021-37114, CVE-2021-45978, CVE-2021-30274, CVE-2022-21651, CVE-2021-45389, CVE-2021-30268, CVE-2022-21648, CVE-2021-45971, CVE-2021-41141, CVE-2021-46141, CVE-2021-41842, CVE-2021-4194, CVE-2021-34797, CVE-2022-21650, CVE-2021-28715, CVE-2021-38576, CVE-2022-0079, CVE-2021-30271, CVE-2022-21647, CVE-2021-45979, CVE-2021-46079, CVE-2021-39980, CVE-2021-28714, CVE-2021-39983, CVE-2021-22567, CVE-2021-44564, CVE-2021-37112, CVE-2021-43779, CVE-2021-36737, CVE-2021-27738, CVE-2021-30303, CVE-2021-30283, CVE-2021-39979, CVE-2021-43816, CVE-2021-20147, CVE-2022-20019, CVE-2021-44351, CVE-2021-30336, CVE-2021-25023, CVE-2021-28712, CVE-2022-0128, CVE-2021-39982, CVE-2021-30279, CVE-2021-40148, CVE-2021-28713, CVE-2022-21643, CVE-2021-30293, CVE-2022-22704, CVE-2021-3837, CVE-2021-30348, CVE-2021-25021, CVE-2021-36739, CVE-2021-44878, CVE-2021-44584, CVE-2021-30278, CVE-2021-45116, CVE-2022-0121, CVE-2021-45428, CVE-2022-21663, CVE-2021-45980, CVE-2021-30269, CVE-2021-45458, CVE-2021-41789, CVE-2022-22707, CVE-2021-39985, CVE-2022-21653, CVE-2021-3842, CVE-2021-37134, CVE-2020-11263

Trust: 5.0

Fetched: May 13, 2022, 7:58 a.m., Published: May 4, 2022, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: ipod touch
vendor: apple model: icloud
vendor: apple model: ipad air
vendor: apple model: iphone
Related entries in the VARIoT vulnerabilities database: VAR-202109-1804, VAR-202109-1805, VAR-202109-1802, VAR-202109-1803

Trust: 3.25

Fetched: May 13, 2022, 7:58 a.m., Published: May 3, 2022, midnight
Vulnerabilities: request forgery
Affected productsExternal IDs
db: NVD ids: CVE-2021-36160, CVE-2021-34798, CVE-2021-40438, CVE-2021-39275

Trust: 5.0

Fetched: May 13, 2022, 7:58 a.m., Published: Dec. 8, 2020, 5 p.m.
Vulnerabilities: default password
Affected productsExternal IDs
vendor: ge healthcare model: xeleris

Trust: 4.5

Fetched: May 13, 2022, 7:58 a.m., Published: Aug. 5, 2022, midnight
Vulnerabilities: privilege escalation, sql injection
Affected productsExternal IDs
vendor: samsung model: mobile devices
vendor: samsung model: mobile
vendor: samsung model: knox
vendor: check point model: check point
vendor: trend model: security
db: NVD ids: CVE-2016-3996, CVE-2016-1920, CVE-2016-2035, CVE-2016-1919, CVE-2016-3117

Trust: 3.75

Fetched: May 13, 2022, 7:58 a.m., Published: May 13, 2029, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
vendor: trend model: security
db: NVD ids: CVE-2020-0601
Related entries in the VARIoT vulnerabilities database: VAR-201211-0090, VAR-201211-0091, VAR-201211-0088, VAR-201211-0089

Trust: 4.25

Fetched: May 13, 2022, 7:57 a.m., Published: Jan. 10, 2020, midnight
Vulnerabilities: command injection, sql injection
Affected productsExternal IDs
vendor: sinapsi model: esolar
vendor: sinapsi model: esolar duo
vendor: sinapsi model: sinapsi
vendor: sinapsi model: esolar light
vendor: sinapsi model: esolar light photovoltaic system monitor
db: NVD ids: CVE-2012-5863, CVE-2012-5864, CVE-2012-5861, CVE-2012-5862

Trust: 5.25

Fetched: May 13, 2022, 7:57 a.m., Published: May 13, 2050, midnight
Vulnerabilities: denial of service, buffer overflow, cross-site scripting...
Affected productsExternal IDs
vendor: cisco model: integrated services router
vendor: cisco model: series
vendor: cisco model: catalyst 6500 series
vendor: cisco model: catalyst
vendor: cisco model: industrial integrated services routers
vendor: cisco model: router
vendor: cisco model: ios xe
vendor: cisco model: isr g2
vendor: cisco model: isr4451
vendor: cisco model: catalyst 6500
vendor: cisco model: cisco ios xr
vendor: cisco model: ios xe software
vendor: cisco model: 4451-x integrated services router
vendor: cisco model: ios software
vendor: cisco model: ios xr
vendor: cisco model: hsrp
vendor: cisco model: cisco iox
vendor: cisco model: 4451-x
vendor: cisco model: cisco ios xe
vendor: cisco model: catalyst 2960-l series switches
vendor: cisco model: isr4451-x
vendor: cisco model: ios xr software
vendor: cisco model: catalyst cdb-8p switches
vendor: cisco model: integrated services routers
vendor: cisco model: nx-os software
vendor: cisco model: series switches
vendor: cisco model: cisco iox application
db: NVD ids: CVE-2020-3217, CVE-2021-1385, CVE-2020-3204, CVE-2018-15373, CVE-2019-12650, CVE-2019-1756, CVE-2018-0484, CVE-2019-1751, CVE-2019-1761, CVE-2019-1740, CVE-2018-15375, CVE-2020-3226, CVE-2020-3200, CVE-2019-1738, CVE-2020-3476, CVE-2019-16009, CVE-2018-0473, CVE-2019-1748, CVE-2019-12655, CVE-2018-0466, CVE-2019-1758, CVE-2018-0485, CVE-2021-1377, CVE-2020-3228, CVE-2019-1752, CVE-2020-3230, CVE-2019-12670, CVE-2019-12649, CVE-2019-1747, CVE-2018-15377, CVE-2019-1737, CVE-2020-3225, CVE-2019-1762, CVE-2018-15369, CVE-2018-15376, CVE-2021-34705, CVE-2021-1391, CVE-2021-34699, CVE-2019-1739, CVE-2019-12668, CVE-2019-12665, CVE-2019-1757, CVE-2018-0475, CVE-2019-12672, CVE-2021-1392, CVE-2020-3231, CVE-2019-12656, CVE-2019-12651, CVE-2019-1746, CVE-2020-3201

Trust: 3.0

Fetched: May 13, 2022, 7:57 a.m., Published: Jan. 6, 2000, midnight
Vulnerabilities: brute force attack
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566

Trust: 4.0

Fetched: May 13, 2022, 7:57 a.m., Published: May 10, 2022, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2021-44228

Trust: 3.25

Fetched: May 13, 2022, 7:57 a.m., Published: Nov. 17, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs

Trust: 3.0

Fetched: May 13, 2022, 7:57 a.m., Published: May 13, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos