VARIoT news about IoT security

Trust: 3.0

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Nov. 26, 2021, midnight
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 5.25

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Dec. 4, 2021, 10:26 p.m.
Vulnerabilities: default password
Affected productsExternal IDs
vendor: tplink model: routers
Related entries in the VARIoT vulnerabilities database: VAR-202111-0510

Trust: 3.5

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Jan. 4, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-3792

Trust: 4.25

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Nov. 9, 2021, 5:46 p.m.
Vulnerabilities: code execution, authentication bypass
Affected productsExternal IDs
vendor: serve model: serve
vendor: pulse secure model: pulse connect secure
vendor: pulse secure model: policy secure
vendor: pulse secure model: connect secure
vendor: pulse secure model: pulse policy secure
db: NVD ids: CVE-2019-11510, CVE-2019-11539, CVE-2020-8260, CVE-2019-1151010, CVE-2020-8243, CVE-2021-22893

Trust: 4.0

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Dec. 30, 2021, 4:22 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 4.75

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Nov. 9, 2021, 2:24 p.m.
Vulnerabilities: denial of service, information leak, code execution...
Affected productsExternal IDs
db: NVD ids: CVE-2021-42386, CVE-2021-42376, CVE-2021-42383, CVE-2021-42384, CVE-2021-42373, CVE-2021-42381, CVE-2021-42374, CVE-2021-42380, CVE-2021-42382, CVE-2021-42377, CVE-2021-42375, CVE-2021-42378, CVE-2021-42379, CVE-2021-42385

Trust: 4.0

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Dec. 2, 2021, 10:15 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: netgear model: router
vendor: netgear model: netgear router

Trust: 3.0

Fetched: Dec. 6, 2021, 2:33 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.0

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Nov. 16, 2021, 1:37 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: dram model: dram

Trust: 3.75

Fetched: Dec. 6, 2021, 2:33 p.m., Published: Dec. 3, 2021, 3:45 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2010-2568
Related entries in the VARIoT vulnerabilities database: VAR-202109-1875, VAR-202109-1874

Trust: 3.25

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Jan. 15, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-33044, CVE-2021-33045
Related entries in the VARIoT vulnerabilities database: VAR-202111-1605

Trust: 5.5

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Jan. 13, 2022, midnight
Vulnerabilities: improper validation, denial of service, code execution...
Affected productsExternal IDs
vendor: siemens model: nucleus
vendor: siemens model: nucleus net
db: NVD ids: CVE-2021-31886

Trust: 4.0

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Nov. 10, 2021, 4:34 p.m.
Vulnerabilities: information leak, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-42373, CVE-2021-42386, CVE-2021-43267

Trust: 3.25

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Nov. 27, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: FORTIGATE ids: FG-IR-19-060

Trust: 4.25

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Jan. 14, 2022, 12:40 p.m.
Vulnerabilities: request forgery, improper access control, cross-site request forgery...
Affected productsExternal IDs
vendor: clamav model: clamav
vendor: asus model: router
vendor: asus model: asus
vendor: asus model: rt-ax56u
vendor: netgear model: router
vendor: netgear model: r7000
vendor: netgear model: r6260
vendor: clam model: clamav
vendor: cisco model: ip phone
vendor: cisco model: clamav
vendor: cisco model: router
vendor: cisco model: guard
vendor: cisco model: security manager
vendor: cisco model: cisco security manager
db: NVD ids: CVE-2021-34945, CVE-2021-34933, CVE-2021-34995, CVE-2021-38690, CVE-2021-34922, CVE-2021-34913, CVE-2022-0224, CVE-2022-20642, CVE-2021-38692, CVE-2021-34908, CVE-2021-34994, CVE-2021-38689, CVE-2021-34928, CVE-2021-34927, CVE-2022-0231, CVE-2021-34936, CVE-2022-22054, CVE-2021-34904, CVE-2021-34977, CVE-2021-38691, CVE-2021-34930, CVE-2021-34914, CVE-2022-20636, CVE-2021-34935, CVE-2021-46255, CVE-2022-20639, CVE-2021-34944, CVE-2021-32649, CVE-2021-38678, CVE-2022-21677, CVE-2022-0213, CVE-2021-34980, CVE-2021-34926, CVE-2022-20641, CVE-2022-20658, CVE-2021-34932, CVE-2021-34907, CVE-2021-34996, CVE-2022-23222, CVE-2022-0178, CVE-2021-34985, CVE-2021-34910, CVE-2022-20638, CVE-2022-23219, CVE-2021-34920, CVE-2021-34911, CVE-2021-38682, CVE-2022-20647, CVE-2021-34937, CVE-2022-20698, CVE-2021-36781, CVE-2021-34943, CVE-2022-22056, CVE-2021-34946, CVE-2021-34919, CVE-2021-34939, CVE-2021-34998, CVE-2022-20646, CVE-2021-34993, CVE-2022-20640, CVE-2021-39032, CVE-2021-42551, CVE-2022-23218, CVE-2021-34915, CVE-2021-34940, CVE-2021-33962, CVE-2021-34984, CVE-2022-20637, CVE-2021-34979, CVE-2022-20660, CVE-2021-34997, CVE-2021-34934, CVE-2021-34925, CVE-2021-34924, CVE-2021-34923, CVE-2021-34941, CVE-2021-34916, CVE-2021-34906, CVE-2022-20643, CVE-2021-34931, CVE-2022-21681, CVE-2021-34978, CVE-2022-20635, CVE-2021-34912, CVE-2021-34942, CVE-2021-32650, CVE-2022-20645, CVE-2022-22055, CVE-2021-34918, CVE-2021-34905, CVE-2022-20644, CVE-2022-21685, CVE-2021-38677, CVE-2021-45760, CVE-2022-21680, CVE-2021-34921, CVE-2021-34929, CVE-2021-34909, CVE-2021-34917, CVE-2021-34938

Trust: 3.75

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Dec. 2, 2021, 9:20 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 3.75

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Nov. 26, 2021, 5:08 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-39238

Trust: 3.75

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Nov. 11, 2021, 12:30 p.m.
Vulnerabilities: denial of service, information leak, code execution
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 4.25

Fetched: Dec. 6, 2021, 1:02 p.m., Published: Nov. 30, 2021, 6:11 p.m.
Vulnerabilities: memory corruption
Affected productsExternal IDs
db: NVD ids: CVE-2021-39238, CVE-2021-39237

Trust: 4.25

Fetched: Dec. 6, 2021, 12:24 p.m., Published: -
Vulnerabilities: buffer overflow, privilege escalation, code execution
Affected productsExternal IDs
vendor: symantec model: endpoint protection
vendor: symantec model: symantec endpoint protection