VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202109-1854, VAR-202109-1855, VAR-202109-1856

Trust: 5.25

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Jan. 17, 2021, midnight
Vulnerabilities: path traversal, denial of service, cross-site request forgery...
Affected productsExternal IDs
vendor: siemens model: scalance w1750d
vendor: siemens model: scalance
vendor: siemens model: w1750d
vendor: aruba model: arubaos
vendor: aruba networks model: arubaos
db: NVD ids: CVE-2021-37721, CVE-2021-37728, CVE-2021-37717, CVE-2021-37720, CVE-2021-37733, CVE-2021-37722, CVE-2021-37725, CVE-2021-37731, CVE-2021-37724, CVE-2020-37719, CVE-2019-5318, CVE-2021-37729, CVE-2021-37718, CVE-2021-37723, CVE-2021-37716

Trust: 4.25

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Nov. 2, 2021, 3:42 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: android
Related entries in the VARIoT vulnerabilities database: VAR-202111-0579, VAR-202111-0609

Trust: 4.5

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Nov. 4, 2021, 4:22 p.m.
Vulnerabilities: information disclosure, code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2021-1924, CVE-2021-1048, CVE-2021-0930, CVE-2021-0889, CVE-2021-0918, CVE-2021-1975

Trust: 4.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: series switches
vendor: cisco model: catalyst
vendor: cisco model: series
db: NVD ids: CVE-2021-40113, CVE-2021-34795

Trust: 4.25

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Oct. 12, 2021, midnight
Vulnerabilities: default password
Affected productsExternal IDs
vendor: google model: wifi
vendor: google model: home
Related entries in the VARIoT vulnerabilities database: VAR-202109-1067

Trust: 4.5

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Jan. 14, 2021, midnight
Vulnerabilities: path traversal
Affected productsExternal IDs
vendor: netgear model: gs752tpp
vendor: netgear model: gs724tpv2
vendor: netgear model: gs728tpv2
vendor: netgear model: gs752tpv2
vendor: netgear model: gs728tppv2
vendor: netgear model: gs750e
vendor: google model: home
vendor: google model: chrome
db: NVD ids: CVE-2021-40867

Trust: 3.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Oct. 15, 2021, 8:17 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: ruggedcom

Trust: 3.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Aug. 25, 2021, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202109-1066

Trust: 5.25

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Jan. 14, 2021, midnight
Vulnerabilities: authentication bypass, buffer overflow
Affected productsExternal IDs
vendor: netgear model: gs105e
vendor: netgear model: gs108e
vendor: netgear model: gs752tpp
vendor: netgear model: gs724tpv2
vendor: netgear model: gs728tpv2
vendor: netgear model: gs752tpv2
vendor: netgear model: gs728tppv2
vendor: netgear model: gs750e
vendor: canary model: canary
db: NVD ids: CVE-2021-40866

Trust: 4.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: -
Vulnerabilities: denial of service, memory leak, path traversal
Affected productsExternal IDs
db: NVD ids: CVE-2022-22152, CVE-2022-22160, CVE-2021-4104, CVE-2022-22177, CVE-2022-22164, CVE-2022-22159, CVE-2021-44228, CVE-2022-22163, CVE-2022-22157, CVE-2022-22156, CVE-2022-22155, CVE-2022-22153, CVE-2021-42550, CVE-2022-22162, CVE-2022-22167, CVE-2022-22154, CVE-2022-22161, CVE-2021-31385, CVE-2021-45046

Trust: 3.0

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Oct. 22, 2021, 1:43 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 3.5

Fetched: Nov. 9, 2021, 12:59 p.m., Published: Oct. 4, 2021, 4:47 p.m.
Vulnerabilities: command injection, cross-site scripting, sql injection...
Affected productsExternal IDs
vendor: openscap model: openscap
Related entries in the VARIoT vulnerabilities database: VAR-202105-0617

Trust: 3.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 3, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco systems model: hyperflex
vendor: cisco systems model: cisco systems
vendor: cisco systems model: cisco hyperflex
vendor: cisco systems model: hyperflex hx data platform
vendor: cisco model: hyperflex
vendor: cisco model: cisco systems
vendor: cisco model: cisco hyperflex
vendor: cisco model: hyperflex hx data platform
db: NVD ids: CVE-2021-1499

Trust: 3.0

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Aug. 18, 2021, 5:26 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 4.25

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Nov. 15, 2021, midnight
Vulnerabilities: use after free, denial of service, code execution...
Affected productsExternal IDs
vendor: motorola model: motorola
vendor: motorola model: android
vendor: samsung model: note
vendor: samsung model: notes
vendor: samsung model: samsung
vendor: samsung model: mobile
vendor: huawei model: huawei
vendor: broadcom model: broadcom
vendor: nokia model: nokia
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2021-30284, CVE-2021-0928, CVE-2021-1924, CVE-2021-0927, CVE-2021-0650, CVE-2021-0672, CVE-2021-1975, CVE-2021-1048, CVE-2021-1982, CVE-2021-1979, CVE-2021-0925, CVE-2021-30255, CVE-2021-1973, CVE-2021-0649, CVE-2021-0932, CVE-2021-0918, CVE-2021-0434, CVE-2021-0920, CVE-2021-0931, CVE-2021-0930, CVE-2021-0919, CVE-2021-1981, CVE-2021-0653, CVE-2021-1921, CVE-2021-0889, CVE-2021-30254

Trust: 4.25

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 15, 2021, midnight
Vulnerabilities: command execution, information leakage
Affected productsExternal IDs
vendor: essential model: phone
vendor: rapid model: scada
vendor: google model: wifi
vendor: google model: home
vendor: google model: android

Trust: 3.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Aug. 16, 2021, 6:51 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: serve model: serve
vendor: asustek model: wireless routers

Trust: 5.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 3, 2022, midnight
Vulnerabilities: denial of service, process crash
Affected productsExternal IDs
vendor: cisco systems model: cisco systems
vendor: cisco systems model: nx-os
vendor: cisco systems model: nx-os software
vendor: cisco systems model: cisco nx-os
vendor: cisco model: cisco systems
vendor: cisco model: nx-os
vendor: cisco model: nx-os software
vendor: cisco model: cisco nx-os
db: NVD ids: CVE-2021-1588

Trust: 3.5

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Jan. 3, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco systems model: cisco systems
vendor: cisco systems model: cisco email security appliance
vendor: cisco systems model: asyncos software
vendor: cisco systems model: cisco asyncos
vendor: cisco systems model: email security appliance
vendor: cisco systems model: asyncos
vendor: cisco model: cisco systems
vendor: cisco model: cisco email security appliance
vendor: cisco model: asyncos software
vendor: cisco model: cisco asyncos
vendor: cisco model: email security appliance
vendor: cisco model: asyncos
db: NVD ids: CVE-2021-1534

Trust: 3.75

Fetched: Nov. 4, 2021, 1:02 p.m., Published: Dec. 18, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: zoom model: zoom