VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202303-1595, VAR-202303-1641, VAR-202303-1567, VAR-202303-1655

Trust: 5.5

Fetched: March 26, 2023, 9:13 a.m., Published: March 22, 2023, 3:05 p.m.
Vulnerabilities: command injection, command execution
Affected productsExternal IDs
vendor: mesh model: mesh
vendor: netgear model: netgear orbi satellite
vendor: netgear model: router
vendor: netgear model: orbi
vendor: cisco model: series routers
vendor: cisco model: router
vendor: cisco model: series
vendor: cisco model: routers
db: NVD ids: CVE-2022-37337, CVE-2022-36429, CVE-2022-38458, CVE-2022-38452

Trust: 5.75

Fetched: March 26, 2023, 9:12 a.m., Published: March 17, 2023, 3:30 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: samsung model: mobile
vendor: samsung model: exynos
vendor: samsung model: mobile devices
vendor: vivo model: modems
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2023-24033

Trust: 4.75

Fetched: March 26, 2023, 9:12 a.m., Published: March 18, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: samsung model: mobile
vendor: samsung model: exynos
vendor: samsung model: mobile devices
vendor: vivo model: modems
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2023-24033

Trust: 3.75

Fetched: March 26, 2023, 9:11 a.m., Published: March 22, 2023, 4:29 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: lenovo model: updates

Trust: 5.75

Fetched: March 26, 2023, 9:10 a.m., Published: March 3, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: vivo model: modem
vendor: vivo model: modems
vendor: google model: pixel
vendor: samsung model: mobile
vendor: samsung model: exynos
vendor: samsung model: samsung mobile
vendor: samsung model: mobile devices
db: NVD ids: CVE-2023-26496, CVE-2023-26498, CVE-2023-26497, CVE-2023-24033
Related entries in the VARIoT vulnerabilities database: VAR-202209-1831

Trust: 4.75

Fetched: March 26, 2023, 9:10 a.m., Published: March 22, 2023, 1:09 p.m.
Vulnerabilities: buffer overflow, code execution, path traversal
Affected productsExternal IDs
db: NVD ids: CVE-2023-1139, CVE-2023-28756, CVE-2023-1145, CVE-2022-38742, CVE-2023-1133, CVE-2023-28755

Trust: 4.5

Fetched: March 26, 2023, 9:09 a.m., Published: March 17, 2023, 4:19 p.m.
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: samsung model: mobile
vendor: samsung model: exynos
vendor: samsung model: galaxy
vendor: samsung model: samsung galaxy
vendor: google model: pixel
db: NVD ids: CVE-2023-24033

Trust: 4.75

Fetched: March 26, 2023, 9:09 a.m., Published: March 22, 2023, 3:49 p.m.
Vulnerabilities: path traversal
Affected productsExternal IDs
vendor: cisco model: nx-os software
vendor: cisco model: ios software
vendor: cisco model: router
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xr
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software
vendor: cisco model: nx-os
vendor: cisco model: ios xr software

Trust: 4.0

Fetched: March 26, 2023, 9:08 a.m., Published: March 22, 2023, 3:49 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: wireless lan controllers
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software

Trust: 3.5

Fetched: March 24, 2023, 9:18 a.m., Published: March 24, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
db: NVD ids: CVE-2023-21036

Trust: 3.25

Fetched: March 24, 2023, 9:18 a.m., Published: March 23, 2023, 11 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home
vendor: apple model: iphone
vendor: apple model: watch
Related entries in the VARIoT vulnerabilities database: VAR-202202-0507, VAR-202202-0506, VAR-202004-0365

Trust: 4.75

Fetched: March 24, 2023, 9:17 a.m., Published: March 17, 2023, 11:14 a.m.
Vulnerabilities: command injection, buffer overflow, improper bounds checking
Affected productsExternal IDs
db: NVD ids: CVE-2021-0179, CVE-2021-0176, CVE-2022-0182, CVE-2020-0578, CVE-2020-0482

Trust: 3.75

Fetched: March 24, 2023, 9:17 a.m., Published: March 22, 2023, 8:24 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: exynos
vendor: samsung model: mobile devices
vendor: samsung model: samsung galaxy
vendor: samsung model: mobile
vendor: samsung model: galaxy
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2023-24033

Trust: 4.75

Fetched: March 24, 2023, 9:16 a.m., Published: March 22, 2023, 11:37 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: raspberry pi model: 3

Trust: 3.0

Fetched: March 24, 2023, 9:15 a.m., Published: March 23, 2023, 6:54 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 3.25

Fetched: March 24, 2023, 9:14 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home
vendor: apple model: iphone
vendor: apple model: watch

Trust: 3.5

Fetched: March 24, 2023, 9:12 a.m., Published: March 20, 2023, 2 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home
vendor: apple model: iphone
vendor: apple model: watch
Related entries in the VARIoT vulnerabilities database: VAR-202302-2240, VAR-202302-2044, VAR-202302-2045

Trust: 5.75

Fetched: March 24, 2023, 9:12 a.m., Published: Feb. 22, 2023, 4:30 p.m.
Vulnerabilities: privilege escalation, code execution
Affected productsExternal IDs
vendor: apple model: macos
db: NVD ids: CVE-2023-23531, CVE-2023-23520, CVE-2023-23530

Trust: 3.0

Fetched: March 24, 2023, 9:12 a.m., Published: Feb. 1, 2023, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ip phone

Trust: 4.0

Fetched: March 24, 2023, 9:10 a.m., Published: March 22, 2023, 3:49 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: ios xe sd-wan software
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios
vendor: cisco model: ios xe
vendor: cisco model: cisco ios xe
vendor: cisco model: sd-wan