VARIoT news about IoT security

Trust: 6.0

Fetched: June 30, 2024, 9:11 a.m., Published: June 10, 2024, midnight
Vulnerabilities: arbitrary command execution, code execution, command execution
Affected productsExternal IDs
vendor: tp-link model: routers
db: NVD ids: CVE-2024-5035

Trust: 4.5

Fetched: June 30, 2024, 9:11 a.m., Published: June 27, 2024, 7:31 a.m.
Vulnerabilities: authentication issue
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: ipad
db: NVD ids: CVE-2024-27867

Trust: 5.5

Fetched: June 30, 2024, 9:09 a.m., Published: June 4, 2024, 9:13 a.m.
Vulnerabilities: privilege management vulnerability, command injection, code execution
Affected productsExternal IDs
vendor: zyxel model: nas542
vendor: zyxel model: nas326
db: NVD ids: CVE-2024-29975, CVE-2024-29974, CVE-2024-29976, CVE-2024-29973, CVE-2024-29972

Trust: 3.25

Fetched: June 30, 2024, 9:07 a.m., Published: June 17, 2024, 5:07 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-30078
Related entries in the VARIoT vulnerabilities database: VAR-202205-0394

Trust: 5.0

Fetched: June 28, 2024, 9:12 a.m., Published: June 5, 2024, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-1388

Trust: 3.25

Fetched: June 26, 2024, 9:47 a.m., Published: June 12, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 4.5

Fetched: June 26, 2024, 9:47 a.m., Published: June 13, 2024, 11:16 a.m.
Vulnerabilities: code execution, sql injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-29824

Trust: 3.25

Fetched: June 26, 2024, 9:47 a.m., Published: June 12, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 3.25

Fetched: June 26, 2024, 9:45 a.m., Published: June 5, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 3.25

Fetched: June 26, 2024, 9:43 a.m., Published: June 20, 2024, midnight
Vulnerabilities: information disclosure, denial of service
Affected productsExternal IDs

Trust: 3.25

Fetched: June 26, 2024, 9:42 a.m., Published: June 26, 3502, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 3.25

Fetched: June 26, 2024, 9:42 a.m., Published: June 12, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566, VAR-201205-0305

Trust: 4.5

Fetched: June 26, 2024, 9:39 a.m., Published: June 8, 2024, 10:54 a.m.
Vulnerabilities: injection attack, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2021-44228, CVE-2023-46604, CVE-2024-4577, CVE-2012-1823

Trust: 3.75

Fetched: June 26, 2024, 9:38 a.m., Published: June 25, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: roku model: roku

Trust: 3.75

Fetched: June 26, 2024, 9:37 a.m., Published: June 22, 2024, 12:20 p.m.
Vulnerabilities: use after free, code execution
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome

Trust: 3.0

Fetched: June 26, 2024, 9:37 a.m., Published: June 25, 2024, 3:15 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-37078
Related entries in the VARIoT vulnerabilities database: VAR-202303-1268, VAR-201502-0201, VAR-202205-0957

Trust: 6.25

Fetched: June 26, 2024, 9:36 a.m., Published: June 7, 2024, 6 a.m.
Vulnerabilities: command injection, code execution, command execution...
Affected productsExternal IDs
vendor: tp-link model: routers
vendor: sonicwall model: remote access
vendor: d-link model: dir-645
vendor: d-link model: router
vendor: netgear model: router
db: NVD ids: CVE-2023-1389, CVE-2015-2051, CVE-2022-30525

Trust: 3.75

Fetched: June 26, 2024, 9:35 a.m., Published: June 18, 2024, 7:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: mesh model: mesh

Trust: 3.0

Fetched: June 26, 2024, 9:34 a.m., Published: June 12, 2024, midnight
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs

Trust: 3.75

Fetched: June 26, 2024, 9:33 a.m., Published: June 26, 2024, 8:30 a.m.
Vulnerabilities: default password
Affected productsExternal IDs