VARIoT news about IoT security

Trust: 3.75

Fetched: Jan. 22, 2025, 9:22 a.m., Published: Jan. 21, 2025, 6:39 a.m.
Vulnerabilities: privilege escalation, memory corruption, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-24014

Trust: 4.5

Fetched: Jan. 22, 2025, 9:22 a.m., Published: Jan. 20, 2025, 11:47 a.m.
Vulnerabilities: default credentials, code execution
Affected productsExternal IDs
vendor: trend micro model: security
vendor: tp-link model: routers
vendor: trend model: security

Trust: 3.0

Fetched: Jan. 22, 2025, 9:21 a.m., Published: Jan. 21, 2025, 11:13 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-21210

Trust: 4.0

Fetched: Jan. 22, 2025, 9:21 a.m., Published: Jan. 21, 2025, 6:57 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-11477, CVE-2025-0411

Trust: 4.0

Fetched: Jan. 22, 2025, 9:21 a.m., Published: Jan. 22, 7219, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 3.0

Fetched: Jan. 22, 2025, 9:20 a.m., Published: Dec. 27, 2024, 2:15 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-53237
Related entries in the VARIoT vulnerabilities database: VAR-202501-0795

Trust: 6.0

Fetched: Jan. 22, 2025, 9:19 a.m., Published: Jan. 21, 2025, 7:34 a.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: tp-link model: routers
vendor: tp-link model: tl-wr940n
vendor: tp-link model: wr940n
db: NVD ids: CVE-2024-54887

Trust: 3.0

Fetched: Jan. 22, 2025, 9:07 a.m., Published: Jan. 19, 2025, 7:42 p.m.
Vulnerabilities: -
Affected productsExternal IDs

Trust: 5.0

Fetched: Jan. 21, 2025, 9:33 a.m., Published: -
Vulnerabilities: password recovery vulnerability
Affected productsExternal IDs
vendor: netgear model: r6200
vendor: netgear model: d6300b
vendor: netgear model: wndr4000 v1.0.2.4_9.1.86
vendor: netgear model: wnr1000v3
vendor: netgear model: ac1450 v1.0.0.34_10.0.16
vendor: netgear model: c6300
vendor: netgear model: r6300
vendor: netgear model: router
vendor: netgear model: vegn2610
vendor: netgear model: wndr3700v3
vendor: netgear model: wndr4500
vendor: netgear model: wnr1000v3 v1.0.2.68_60.0.93
vendor: netgear model: d6300
vendor: netgear model: dgn2200v4
vendor: netgear model: dgn2200bv4
vendor: netgear model: ac1450
vendor: netgear model: r6300 v1.0.2.78_1.0.58
vendor: netgear model: r6200 v1.0.1.56_1.0.43
vendor: netgear model: wndr4000

Trust: 5.25

Fetched: Jan. 21, 2025, 9:32 a.m., Published: Jan. 3, 2025, midnight
Vulnerabilities: code execution, memory corruption, buffer overflow
Affected productsExternal IDs
vendor: samsung model: samsung
vendor: samsung model: samsung galaxy
vendor: samsung model: galaxy
vendor: google model: android
db: NVD ids: CVE-2024-43096, CVE-2024-49748, CVE-2024-49415, CVE-2024-43770, CVE-2024-43771, CVE-2024-49747

Trust: 3.75

Fetched: Jan. 21, 2025, 9:26 a.m., Published: Jan. 20, 2025, 2:05 p.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: trend model: security
vendor: hikvision model: hikvision
vendor: hikvision model: ip cameras
vendor: tp-link model: routers
vendor: trend micro model: security

Trust: 4.0

Fetched: Jan. 21, 2025, 9:25 a.m., Published: Jan. 11, 2025, midnight
Vulnerabilities: feature bypass, security feature bypass
Affected productsExternal IDs
db: NVD ids: CVE-2023-21563
Related entries in the VARIoT vulnerabilities database: VAR-201909-1437, VAR-202405-0699, VAR-201502-0201

Trust: 4.5

Fetched: Jan. 21, 2025, 9:24 a.m., Published: Dec. 26, 2024, 9:42 p.m.
Vulnerabilities: brute force attack
Affected productsExternal IDs
vendor: d-link model: router
vendor: d-link model: dir-806
vendor: d-link model: dir-845l
vendor: d-link model: dir-645
db: NVD ids: CVE-2019-10891, CVE-2022-37056, CVE-2024-33112, CVE-2015-2051

Trust: 4.5

Fetched: Jan. 21, 2025, 9:22 a.m., Published: Dec. 29, 2024, 8:10 a.m.
Vulnerabilities: privilege escalation, code execution, memory corruption...
Affected productsExternal IDs
db: NVD ids: CVE-2023-5528

Trust: 4.0

Fetched: Jan. 21, 2025, 9:21 a.m., Published: Jan. 21, 7210, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu
db: NVD ids: CVE-2025-21176, CVE-2025-21171, CVE-2025-21173, CVE-2025-21172

Trust: 3.0

Fetched: Jan. 21, 2025, 9:20 a.m., Published: Jan. 19, 2025, 6:22 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-7344

Trust: 3.75

Fetched: Jan. 21, 2025, 9:17 a.m., Published: Jan. 20, 2025, 2:14 a.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: trend model: security

Trust: 4.0

Fetched: Jan. 21, 2025, 9:16 a.m., Published: Jan. 1, 2025, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-20146

Trust: 4.5

Fetched: Jan. 21, 2025, 9:12 a.m., Published: July 8, 2020, midnight
Vulnerabilities: code execution, data injection, buffer overflow...
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.5

Fetched: Jan. 21, 2025, 9:09 a.m., Published: Jan. 30, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: check point model: check point
vendor: apple model: iphone
vendor: apple model: webkit
vendor: checkpoint model: check point
vendor: sonicwall model: remote access
vendor: google model: home
vendor: google model: wifi
vendor: google model: android
vendor: trendmicro model: security
vendor: check point software technologies model: check point