VARIoT news about IoT security

Trust: 3.25

Fetched: Dec. 29, 2024, 9:43 a.m., Published: Dec. 28, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-56699

Trust: 3.0

Fetched: Dec. 29, 2024, 9:42 a.m., Published: Dec. 16, 2024, 7:48 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 4.75

Fetched: Dec. 29, 2024, 9:39 a.m., Published: Dec. 9, 2024, 8:21 a.m.
Vulnerabilities: buffer overflow, authentication flaw, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-48868, CVE-2024-50402, CVE-2024-21899, CVE-2024-48859, CVE-2024-48866, CVE-2024-48865, CVE-2024-50403, CVE-2024-50393, CVE-2024-48867
Related entries in the VARIoT vulnerabilities database: VAR-201909-1437, VAR-201502-0201, VAR-202405-0699

Trust: 3.5

Fetched: Dec. 29, 2024, 9:37 a.m., Published: Dec. 28, 2024, 12:16 a.m.
Vulnerabilities: command execution, denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2019-10891, CVE-2015-2051, CVE-2024-33112, CVE-2022-37056
Related entries in the VARIoT vulnerabilities database: VAR-202106-0541, VAR-202106-0542

Trust: 4.25

Fetched: Dec. 29, 2024, 9:36 a.m., Published: Dec. 4, 2024, 2:25 p.m.
Vulnerabilities: authentication bypass, weak password, path traversal
Affected productsExternal IDs
vendor: schneider electric model: m340
vendor: schneider electric model: modicon m580
vendor: schneider electric model: m580
vendor: schneider electric model: m340 cpus
vendor: schneider electric model: modicon m340
vendor: schneider model: m340
vendor: schneider model: modicon m580
vendor: schneider model: m580
vendor: schneider model: m340 cpus
vendor: schneider model: modicon m340
db: NVD ids: CVE-2024-3982, CVE-2023-6408, CVE-2024-7940, CVE-2023-6409, CVE-2021-22763, CVE-2024-3980, CVE-2021-22764

Trust: 3.0

Fetched: Dec. 29, 2024, 9:35 a.m., Published: -
Vulnerabilities: os command injection, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-53688

Trust: 3.25

Fetched: Dec. 29, 2024, 9:35 a.m., Published: Nov. 29, 2024, midnight
Vulnerabilities: configuration error
Affected productsExternal IDs

Trust: 3.0

Fetched: Dec. 29, 2024, 9:34 a.m., Published: Dec. 6, 2024, midnight
Vulnerabilities: kernel panic
Affected productsExternal IDs
db: NVD ids: CVE-2024-53183

Trust: 6.25

Fetched: Dec. 29, 2024, 9:33 a.m., Published: Jan. 29, 7136, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu
db: NVD ids: CVE-2024-53907, CVE-2024-53908

Trust: 3.75

Fetched: Dec. 29, 2024, 9:32 a.m., Published: Dec. 13, 2024, 9:24 a.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2024-37144, CVE-2024-37143

Trust: 5.75

Fetched: Dec. 29, 2024, 9:31 a.m., Published: Dec. 24, 2024, 7:26 a.m.
Vulnerabilities: privilege escalation, code execution, command injection
Affected productsExternal IDs
vendor: node.js model: node.js
db: NVD ids: CVE-2024-56334

Trust: 3.75

Fetched: Dec. 29, 2024, 9:30 a.m., Published: Dec. 22, 2024, 4:02 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: trend model: security
vendor: trend micro model: security
Related entries in the VARIoT vulnerabilities database: VAR-202412-2453

Trust: 4.5

Fetched: Dec. 29, 2024, 9:30 a.m., Published: Dec. 24, 2024, 4:18 a.m.
Vulnerabilities: default credentials, session hijacking, path traversal
Affected productsExternal IDs
db: NVD ids: CVE-2023-34990

Trust: 3.25

Fetched: Dec. 29, 2024, 9:29 a.m., Published: Dec. 27, 2024, 2:23 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-56565

Trust: 3.0

Fetched: Dec. 29, 2024, 9:29 a.m., Published: Dec. 26, 2024, 10:22 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-52046
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566

Trust: 4.25

Fetched: Dec. 29, 2024, 9:26 a.m., Published: Dec. 26, 2024, 8:24 p.m.
Vulnerabilities: authentication bypass, code execution, denial of service
Affected productsExternal IDs
vendor: trend model: security
vendor: essential model: phone
vendor: cups model: cups
db: NVD ids: CVE-2024-38030, CVE-2024-21433, CVE-2024-47177, CVE-2021-44228, CVE-2024-47176, CVE-2024-38199, CVE-2024-47175, CVE-2024-47076, CVE-2020-10148

Trust: 4.5

Fetched: Dec. 29, 2024, 9:26 a.m., Published: Nov. 29, 2024, midnight
Vulnerabilities: code execution, directory traversal
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo alto networks model: networks
db: NVD ids: CVE-2024-0012, CVE-2024-9474, CVE-2024-47575, CVE-2024-43451, CVE-2024-11667, CVE-2024-49040, CVE-2024-49039, CVE-2024-48990

Trust: 4.0

Fetched: Dec. 29, 2024, 9:25 a.m., Published: Oct. 2, 2024, 3:56 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: ios xe software
vendor: cisco model: ios software
vendor: cisco model: firepower
vendor: cisco model: meraki mx
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower threat defense
vendor: cisco model: series
vendor: cisco model: meraki mx firmware
vendor: cisco model: ios xe

Trust: 3.5

Fetched: Dec. 29, 2024, 9:24 a.m., Published: Dec. 3, 2024, midnight
Vulnerabilities: buffer overflow, denial of service, default credentials...
Affected productsExternal IDs
vendor: wireshark model: wireshark
Related entries in the VARIoT vulnerabilities database: VAR-202412-2693

Trust: 5.75

Fetched: Dec. 29, 2024, 9:24 a.m., Published: Dec. 27, 2024, 10:15 a.m.
Vulnerabilities: integrity validation vulnerability
Affected productsExternal IDs
vendor: huawei model: myna
vendor: huawei model: huawei
db: NVD ids: CVE-2020-9210