VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202010-1131

Trust: 5.75

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Jan. 11, 2022, 10:54 p.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: cisco firepower management center
vendor: cisco model: firepower
vendor: cisco model: asa software
vendor: cisco model: firepower threat defense
vendor: cisco model: firepower threat defense software
vendor: cisco model: adaptive security appliance
vendor: cisco model: device manager
vendor: cisco model: cisco adaptive security appliance software
vendor: cisco model: firepower management center
vendor: cisco model: adaptive security appliance software
db: NVD ids: CVE-2020-3581
Related entries in the VARIoT vulnerabilities database: VAR-202110-0386

Trust: 5.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Oct. 15, 2021, midnight
Vulnerabilities: privilege escalation, privilege management vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2021-31350
Related entries in the VARIoT vulnerabilities database: VAR-202110-0132

Trust: 3.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-24021
db: FORTIGATE ids: FG-IR-20-098

Trust: 3.75

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2020-15858

Trust: 4.75

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: ge healthcare model: aespire
vendor: ge healthcare model: aestiva
db: NVD ids: CVE-2019-10337
Related entries in the VARIoT vulnerabilities database: VAR-202002-0775

Trust: 3.5

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: safari
vendor: google model: home
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2014-4019
Related entries in the VARIoT vulnerabilities database: VAR-202111-0412

Trust: 3.75

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Jan. 3, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco systems model: cisco systems
vendor: cisco systems model: anyconnect secure mobility client
vendor: cisco systems model: anyconnect_secure_mobility_client
vendor: cisco systems model: cisco anyconnect secure mobility client
vendor: cisco model: cisco systems
vendor: cisco model: anyconnect secure mobility client
vendor: cisco model: anyconnect_secure_mobility_client
vendor: cisco model: cisco anyconnect secure mobility client
db: NVD ids: CVE-2021-40124

Trust: 5.5

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Jan. 3, 2022, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco systems model: email security appliance
vendor: cisco systems model: cisco systems
vendor: cisco systems model: asyncos
vendor: cisco systems model: asyncos software
vendor: cisco systems model: cisco email security appliance
vendor: cisco systems model: cisco asyncos
vendor: cisco model: email security appliance
vendor: cisco model: cisco systems
vendor: cisco model: asyncos
vendor: cisco model: asyncos software
vendor: cisco model: cisco email security appliance
vendor: cisco model: cisco asyncos
db: NVD ids: CVE-2021-34741

Trust: 4.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Jan. 5, 2022, midnight
Vulnerabilities: authentication vulnerability
Affected productsExternal IDs

Trust: 3.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: lighttpd model: lighttpd

Trust: 3.5

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: check point model: check point
vendor: serve model: serve

Trust: 4.5

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: cross-site request forgery, buffer overflow, cross-site scripting...
Affected productsExternal IDs
vendor: moxa model: moxa
vendor: moxa model: nport 5600 series
vendor: moxa model: nport 5200 series
vendor: moxa model: nport 5600-8-dtl series
vendor: moxa model: nport 5150ai-m12
vendor: moxa model: nport 5600-8-dt
vendor: moxa model: nport 5450ai-m12
vendor: moxa model: nport ia5450a
vendor: moxa model: nport 5600-8-dtl
vendor: moxa model: nport 5100a series
vendor: moxa model: nport 5400 series
vendor: moxa model: nport 5200a
vendor: moxa model: nport 5100a
vendor: moxa model: nport 5110
vendor: moxa model: nport 5200a series
vendor: moxa model: nport
vendor: moxa model: nport p5150a
vendor: moxa model: nport 5130
vendor: moxa model: nport 5250ai-m12
db: NVD ids: CVE-2016-9363, CVE-2016-9366, CVE-2016-9361, CVE-2016-9367, CVE-2016-9371, CVE-2016-9348, CVE-2016-9365, CVE-2016-9369
db: ICS CERT ids: ICSA-16-336-02, ICSA-16-336-02A
db: US CERT ids: ICSA-16-336-02, ICSA-16-336-02A

Trust: 3.25

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-38154

Trust: 3.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: buffer overflow
Affected productsExternal IDs

Trust: 3.25

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-39277, CVE-2021-39276
Related entries in the VARIoT vulnerabilities database: VAR-202109-0404

Trust: 5.75

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Jan. 1, 2022, midnight
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: siemens model: apogee pxc modular
vendor: siemens model: apogee pxc
vendor: siemens model: talon tc
vendor: siemens model: talon tc compact
vendor: siemens model: apogee mbc
vendor: siemens model: apogee mec
vendor: siemens model: apogee pxc compact
vendor: siemens model: talon tc modular
db: NVD ids: CVE-2021-27391
Related entries in the VARIoT vulnerabilities database: VAR-201909-1007, VAR-201909-1008

Trust: 3.75

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: weak password, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2019-14896, CVE-2019-13473, CVE-2019-13474, CVE-2019-14897, CVE-2019-14901
Related entries in the VARIoT vulnerabilities database: VAR-202108-1057, VAR-202108-1005

Trust: 3.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-30860, CVE-2021-34484

Trust: 5.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 5.75

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: dropbear model: ssh server
vendor: proftpd model: proftpd
db: MICROSOFT ids: MS17-010