VARIoT news about IoT security

Trust: 3.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 24, 2021, 1:16 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: check point model: check point
vendor: vivo model: vivo
vendor: xiaomi model: browser
db: NVD ids: CVE-2021-0673, CVE-2021-0663, CVE-2021-0661, CVE-2021-0662

Trust: 4.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 25, 2021, 6:49 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: vivo model: vivo
vendor: google model: home
vendor: google model: android
vendor: check point model: check point
db: NVD ids: CVE-2021-0662, CVE-2021-0661, CVE-2021-0663

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Sept. 3, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: series

Trust: 3.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Jan. 6, 2022, midnight
Vulnerabilities: brute force attack, default credentials
Affected productsExternal IDs

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Dec. 10, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2020-17087

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 25, 2021, 2:02 p.m.
Vulnerabilities: sql injection
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202111-1629

Trust: 3.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 9, 2021, 5:43 p.m.
Vulnerabilities: improper access control, denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2021-0200, CVE-2021-0199, CVE-2021-0197, CVE-2021-0198

Trust: 3.5

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 26, 2021, 1:05 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: samsung model: note
vendor: samsung model: samsung
vendor: oneplus model: oneplus
vendor: oneplus model: oxygenos
vendor: oneplus model: one

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Jan. 7, 2022, 7:33 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 4.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 16, 2021, 5:35 p.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: google model: android

Trust: 3.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 17, 2021, 8:05 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: tesla model: model 3
vendor: tesla model: model
db: NVD ids: CVE-2021-0146

Trust: 3.25

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 18, 2021, 5:19 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 3.25

Fetched: Nov. 29, 2021, 2:59 p.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-43221

Trust: 3.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 27, 2021, 7:56 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: oneplus model: oneplus

Trust: 5.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 9, 2021, midnight
Vulnerabilities: command injection
Affected productsExternal IDs
db: NVD ids: CVE-2021-38685, CVE-2009-1234

Trust: 5.25

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 15, 2021, midnight
Vulnerabilities: authentication bypass, request forgery, code execution...
Affected productsExternal IDs
vendor: dell emc model: bios
vendor: dell model: bios
vendor: lenovo model: bios
vendor: lenovo model: updates
vendor: lenovo model: system
vendor: lenovo model: desktop
vendor: ruijie model: switch
vendor: asus model: asus
vendor: broadcom model: linux
vendor: broadcom model: broadcom
vendor: motorola model: motorola
vendor: motorola model: android
vendor: osisoft model: pi_vision
vendor: osisoft model: pi vision
vendor: advantech model: webaccess_hmi_designer
vendor: advantech model: webaccess
vendor: google model: wifi
vendor: google model: android
vendor: cacti model: cacti
vendor: qnap model: helpdesk
db: NVD ids: CVE-2021-42379, CVE-2021-26321, CVE-2021-43496, CVE-2021-42337, CVE-2021-43574, CVE-2021-41271, CVE-2021-43620, CVE-2021-38978, CVE-2021-43336, CVE-2021-41269, CVE-2020-12903, CVE-2021-24804, CVE-2021-41266, CVE-2021-42384, CVE-2021-21701, CVE-2021-3787, CVE-2021-43276, CVE-2021-43331, CVE-2021-0655, CVE-2021-34357, CVE-2021-41244, CVE-2021-36305, CVE-2021-43492, CVE-2021-3840, CVE-2021-43277, CVE-2021-3519, CVE-2021-41950, CVE-2021-38974, CVE-2020-4146, CVE-2021-39231, CVE-2021-38972, CVE-2020-12902, CVE-2021-43553, CVE-2021-26336, CVE-2021-25965, CVE-2021-43577, CVE-2021-24796, CVE-2021-0078, CVE-2021-43337, CVE-2021-40745, CVE-2020-12898, CVE-2020-21639, CVE-2021-43275, CVE-2021-24802, CVE-2021-39233, CVE-2021-3577, CVE-2021-3934, CVE-2020-12900, CVE-2021-33481, CVE-2021-33480, CVE-2021-30266, CVE-2020-12892, CVE-2021-43977, CVE-2021-42381, CVE-2021-24776, CVE-2021-38979, CVE-2021-43610, CVE-2021-43611, CVE-2020-14424, CVE-2021-42956, CVE-2021-38981, CVE-2021-39235, CVE-2020-12895, CVE-2021-43390, CVE-2021-38983, CVE-2021-26315, CVE-2020-12929, CVE-2020-21627, CVE-2021-25940, CVE-2021-0096, CVE-2021-24852, CVE-2021-38977, CVE-2021-43493, CVE-2021-43975, CVE-2021-0657, CVE-2021-24758, CVE-2021-3932, CVE-2021-0013, CVE-2021-0071, CVE-2021-42386, CVE-2021-41263, CVE-2021-3683, CVE-2021-0079, CVE-2021-33056, CVE-2021-1981, CVE-2021-43576, CVE-2021-1921, CVE-2021-30263, CVE-2021-3931, CVE-2021-42773, CVE-2021-3776, CVE-2021-42703, CVE-2021-0063, CVE-2021-42378, CVE-2021-43280, CVE-2021-26322, CVE-2020-12946, CVE-2021-43279, CVE-2021-30284, CVE-2021-1903, CVE-2021-0121, CVE-2021-39236, CVE-2021-24834, CVE-2021-25983, CVE-2021-0064, CVE-2021-38985, CVE-2021-33086, CVE-2021-36908, CVE-2021-33089, CVE-2021-26323, CVE-2021-42775, CVE-2021-42954, CVE-2020-21141, CVE-2021-41972, CVE-2021-3793, CVE-2021-38975, CVE-2021-43618, CVE-2021-33479, CVE-2020-12944, CVE-2021-40756, CVE-2021-25984, CVE-2021-24851, CVE-2021-0065, CVE-2020-12964, CVE-2021-3945, CVE-2020-12962, CVE-2021-36909, CVE-2021-33087, CVE-2021-22959, CVE-2021-43273, CVE-2021-42250, CVE-2021-0656, CVE-2020-12893, CVE-2021-0658, CVE-2021-0667, CVE-2021-33106, CVE-2021-39234, CVE-2021-42362, CVE-2021-24847, CVE-2021-42563, CVE-2021-42525, CVE-2021-42382, CVE-2021-43391, CVE-2021-39222, CVE-2021-38984, CVE-2021-3788, CVE-2021-1982, CVE-2021-25976, CVE-2020-12951, CVE-2021-41951, CVE-2020-8741, CVE-2021-43274, CVE-2021-34992, CVE-2021-26795, CVE-2021-21528, CVE-2021-42706, CVE-2021-24772, CVE-2021-3792, CVE-2021-41532, CVE-2021-43578, CVE-2021-0664, CVE-2021-42380, CVE-2021-43494, CVE-2021-25982, CVE-2021-42838, CVE-2021-42377, CVE-2021-24853, CVE-2021-43278, CVE-2021-30265, CVE-2021-3921, CVE-2021-42725, CVE-2021-43332, CVE-2021-42383, CVE-2021-42385, CVE-2021-43495, CVE-2020-12961, CVE-2021-39232, CVE-2021-38973, CVE-2021-40761, CVE-2021-42363, CVE-2021-3775, CVE-2021-37910, CVE-2021-30264, CVE-2021-42268
Related entries in the VARIoT vulnerabilities database: VAR-202111-1479

Trust: 5.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 15, 2021, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: huawei model: huawei
db: NVD ids: CVE-2021-39995

Trust: 4.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Oct. 27, 2021, 2:29 p.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: cisco model: anyconnect ssl vpn
vendor: cisco model: cisco adaptive security appliance software
vendor: cisco model: firepower
vendor: cisco model: device manager
vendor: cisco model: firepower management center
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: clientless ssl vpn
vendor: cisco model: adaptive security appliance software
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower threat defense
vendor: cisco model: asa software
vendor: cisco model: firepower threat defense software
vendor: cisco model: cisco firepower management center

Trust: 5.75

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Nov. 25, 2021, 6 a.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: xiaomi model: redmi
vendor: xiaomi model: miui
vendor: vivo model: vivo
vendor: oneplus model: oneplus
vendor: google model: android
vendor: check point model: check point
db: NVD ids: CVE-2021-0662, CVE-2021-0661, CVE-2021-0663, CVE-2021-0673

Trust: 4.0

Fetched: Nov. 29, 2021, 2:59 p.m., Published: Sept. 2, 2021, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-28139