VARIoT news about IoT security

Trust: 5.5

Fetched: Nov. 17, 2024, 11:04 a.m., Published: Nov. 4, 2024, 9:59 a.m.
Vulnerabilities: file inclusion, local file inclusion, access control vulnerability...
Affected productsExternal IDs
vendor: sonicwall model: ssl vpn
vendor: sonicwall model: sonicos
db: NVD ids: CVE-2024-47575, CVE-2024-51567, CVE-2024-46483, CVE-2024-40766, CVE-2024-51568, CVE-2024-9264, CVE-2024-23113

Trust: 3.75

Fetched: Nov. 17, 2024, 11:03 a.m., Published: Oct. 22, 2024, 1:11 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security
vendor: trend model: micro trend micro
vendor: trend micro model: security
vendor: trend micro model: micro trend micro
vendor: trendmicro model: security
vendor: trendmicro model: micro trend micro
vendor: google model: home

Trust: 3.0

Fetched: Nov. 17, 2024, 10:55 a.m., Published: Oct. 23, 2024, 1:49 p.m.
Vulnerabilities: input validation error
Affected productsExternal IDs
db: NVD ids: CVE-2024-38094

Trust: 3.5

Fetched: Nov. 17, 2024, 10:53 a.m., Published: Nov. 4, 2024, midnight
Vulnerabilities: sql injection, information disclosure, cross-site scripting
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202404-0070, VAR-202411-0293

Trust: 6.0

Fetched: Nov. 17, 2024, 10:49 a.m., Published: Nov. 11, 2024, midnight
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: d-link model: dns-340l
vendor: d-link model: dns-320lw
vendor: d-link model: dns-320
vendor: d-link model: dns-325
db: NVD ids: CVE-2024-3273, CVE-2024-10914

Trust: 5.5

Fetched: Nov. 17, 2024, 10:49 a.m., Published: Oct. 25, 2024, 10:25 a.m.
Vulnerabilities: cross-site scripting, data deserialization vulnerability, denial of service
Affected productsExternal IDs
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2024-20377, CVE-2024-20388, CVE-2024-20387, CVE-2024-38094, CVE-2024-4947, CVE-2024-20481

Trust: 3.0

Fetched: Nov. 17, 2024, 10:45 a.m., Published: Nov. 8, 2024, midnight
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 4.25

Fetched: Nov. 17, 2024, 10:45 a.m., Published: Nov. 6, 2024, 10:18 a.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs

Trust: 3.75

Fetched: Nov. 17, 2024, 10:45 a.m., Published: Oct. 22, 2024, 1 p.m.
Vulnerabilities: authentication vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2024-8260

Trust: 4.75

Fetched: Nov. 17, 2024, 10:43 a.m., Published: Nov. 6, 2024, 3:51 p.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: cisco model: ip conference phone
vendor: cisco model: series
vendor: cisco model: 8831
vendor: cisco model: ip phone

Trust: 3.0

Fetched: Nov. 17, 2024, 10:43 a.m., Published: Oct. 30, 2024, 6:04 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-10456

Trust: 3.5

Fetched: Nov. 17, 2024, 10:42 a.m., Published: Sept. 30, 2019, 8:03 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: mesh model: mesh

Trust: 3.75

Fetched: Nov. 17, 2024, 10:42 a.m., Published: Oct. 24, 2024, 5:19 a.m.
Vulnerabilities: authentication vulnerability, authentication flaw
Affected productsExternal IDs
db: NVD ids: CVE-2024-47575

Trust: 3.75

Fetched: Nov. 17, 2024, 10:41 a.m., Published: May 2, 2023, 9:48 p.m.
Vulnerabilities: default credentials, information disclosure, cross-site scripting...
Affected productsExternal IDs

Trust: 3.0

Fetched: Nov. 17, 2024, 10:40 a.m., Published: Oct. 25, 2024, 3:15 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-47575

Trust: 4.5

Fetched: Nov. 17, 2024, 10:39 a.m., Published: Nov. 12, 2024, 6:48 p.m.
Vulnerabilities: memory leak
Affected productsExternal IDs
vendor: essential model: phone
vendor: asus model: asus
db: NVD ids: CVE-2024-49040, CVE-2024-43451, CVE-2024-49019, CVE-2024-49039

Trust: 3.75

Fetched: Nov. 17, 2024, 10:38 a.m., Published: Nov. 11, 2024, 9:12 a.m.
Vulnerabilities: information disclosure, denial of service
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: apple tv
vendor: apple model: ipad
vendor: apple model: macos
vendor: apple model: watchos
vendor: apple model: watch
vendor: apple model: tvos
vendor: apple model: iphone
vendor: apple model: software update

Trust: 4.5

Fetched: Nov. 17, 2024, 10:37 a.m., Published: Nov. 14, 2024, midnight
Vulnerabilities: sql injection
Affected productsExternal IDs
vendor: google model: home
vendor: google model: google chrome
vendor: google model: chrome
vendor: sophos model: mobile
db: NVD ids: CVE-2024-47139, CVE-2024-38814, CVE-2024-40711, CVE-2024-45844

Trust: 3.75

Fetched: Nov. 17, 2024, 10:36 a.m., Published: Nov. 5, 2024, 11:30 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.0

Fetched: Nov. 17, 2024, 10:36 a.m., Published: Jan. 17, 7080, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu