VARIoT news about IoT security

Trust: 3.0

Fetched: June 23, 2024, 9:25 a.m., Published: June 18, 2024, 9:59 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2018-18284

Trust: 3.75

Fetched: June 23, 2024, 9:24 a.m., Published: -
Vulnerabilities: default credentials
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202404-0070

Trust: 4.75

Fetched: June 23, 2024, 9:20 a.m., Published: April 9, 2024, 10:05 a.m.
Vulnerabilities: arbitrary command execution, command injection, command execution...
Affected productsExternal IDs
vendor: d-link model: dns-340l
vendor: d-link model: dns-320l
vendor: d-link model: dns-327l
vendor: d-link model: dns-325
db: NVD ids: CVE-2024-3273
Related entries in the VARIoT vulnerabilities database: VAR-202404-0371, VAR-202404-0248, VAR-202404-0250, VAR-202405-1812, VAR-202404-0249, VAR-202404-0331

Trust: 6.5

Fetched: June 23, 2024, 9:19 a.m., Published: April 10, 2024, 4:56 p.m.
Vulnerabilities: command execution, code execution, input validation vulnerability...
Affected productsExternal IDs
vendor: tp-link model: routers
vendor: tp-link model: gateway
vendor: snort.org model: snort
vendor: snort model: snort
vendor: cisco model: series
vendor: cisco model: routers
vendor: cisco model: router
db: NVD ids: CVE-2024-24976, CVE-2023-49906, CVE-2023-49913, CVE-2024-27201, CVE-2023-49908, CVE-2023-49907, CVE-2023-49912, CVE-2023-49074, CVE-2023-49134, CVE-2023-49909, CVE-2023-49133, CVE-2023-49910, CVE-2023-49911, CVE-2023-48724, CVE-2024-22178, CVE-2024-21870

Trust: 3.0

Fetched: June 21, 2024, 9:53 a.m., Published: June 10, 2024, 12:09 p.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2024-29849

Trust: 4.0

Fetched: June 21, 2024, 9:52 a.m., Published: May 29, 2024, 5:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: amazon model: echo show

Trust: 4.75

Fetched: June 21, 2024, 9:51 a.m., Published: June 14, 2024, midnight
Vulnerabilities: code execution, buffer overflow
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2023-0813

Trust: 4.0

Fetched: June 21, 2024, 9:49 a.m., Published: June 19, 2024, 7:40 a.m.
Vulnerabilities: code execution, service disruption
Affected productsExternal IDs
db: NVD ids: CVE-2024-5671

Trust: 3.75

Fetched: June 21, 2024, 9:46 a.m., Published: June 13, 2024, 9:12 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: home assistant model: home assistant

Trust: 3.25

Fetched: June 21, 2024, 9:45 a.m., Published: June 20, 2024, 11:13 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-48746

Trust: 4.75

Fetched: June 21, 2024, 9:45 a.m., Published: June 13, 2024, 7:08 a.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
db: NVD ids: CVE-2024-29745, CVE-2024-4610, CVE-2024-32896, CVE-2024-29748

Trust: 5.5

Fetched: June 21, 2024, 9:45 a.m., Published: June 5, 2024, midnight
Vulnerabilities: code execution, buffer overflow
Affected productsExternal IDs
vendor: lenovo model: bios
vendor: lenovo model: thinkpad
vendor: lenovo model: thinkpad x1
vendor: lenovo model: thinkpad x1 carbon
vendor: lenovo model: yoga
vendor: lenovo model: system
db: NVD ids: CVE-2024-0762

Trust: 3.5

Fetched: June 21, 2024, 9:34 a.m., Published: June 20, 2024, 7:06 a.m.
Vulnerabilities: code execution, use after free
Affected productsExternal IDs
vendor: google model: chrome
vendor: google model: google chrome

Trust: 5.25

Fetched: June 21, 2024, 9:32 a.m., Published: June 13, 2024, noon
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
vendor: siemens model: scalance
vendor: siemens model: scalance w700
db: NVD ids: CVE-2023-44317, CVE-2022-36323, CVE-2023-44318, CVE-2023-44319, CVE-2023-44374, CVE-2022-46144, CVE-2023-49691, CVE-2023-44373

Trust: 3.5

Fetched: June 21, 2024, 9:24 a.m., Published: June 21, 2024, midnight
Vulnerabilities: authentication bypass, directory traversal, os command injection...
Affected productsExternal IDs
db: NVD ids: CVE-2024-27171, CVE-2024-7145, CVE-2024-27147, CVE-2024-27152, CVE-2024-27166, CVE-2024-27168, CVE-2024-27149, CVE-2024-27174, CVE-2024-27169, CVE-2024-3498, CVE-2024-27141, CVE-2024-27173, CVE-2024-27163, CVE-2024-27172, CVE-2024-27144, CVE-2024-27155, CVE-2024-27143, CVE-2024-27157, CVE-2024-27159, CVE-2024-27180, CVE-2024-27179, CVE-2024-27151, CVE-2024-27146, CVE-2024-27150, CVE-2024-27176, CVE-2024-27161, CVE-2024-27167, CVE-2024-27142, CVE-2024-27148, CVE-2024-27154, CVE-2024-3497, CVE-2024-27165, CVE-2024-27164, CVE-2024-3496, CVE-2024-27158, CVE-2024-27160, CVE-2024-27162, CVE-2024-27178, CVE-2024-27175, CVE-2024-27156, CVE-2024-27170, CVE-2024-27153

Trust: 5.5

Fetched: June 21, 2024, 9:24 a.m., Published: June 13, 2024, 7:13 a.m.
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
vendor: siemens model: scalance
vendor: siemens model: scalance w700
db: NVD ids: CVE-2023-44317, CVE-2022-36323, CVE-2023-44318, CVE-2023-44319, CVE-2023-44374, CVE-2022-46144, CVE-2023-49691, CVE-2023-44373

Trust: 3.25

Fetched: June 21, 2024, 9:22 a.m., Published: June 21, 2024, 3:58 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-30078

Trust: 5.25

Fetched: June 21, 2024, 9:21 a.m., Published: June 21, 2023, midnight
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
vendor: siemens model: scalance
vendor: siemens model: scalance w700
db: NVD ids: CVE-2023-44317, CVE-2022-36323, CVE-2023-44318, CVE-2023-44319, CVE-2023-44374, CVE-2022-46144, CVE-2023-49691, CVE-2023-44373

Trust: 5.0

Fetched: June 21, 2024, 9:21 a.m., Published: June 17, 2024, 8:01 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-30078

Trust: 5.5

Fetched: June 21, 2024, 9:20 a.m., Published: June 20, 2024, 2:22 p.m.
Vulnerabilities: code execution, buffer overflow
Affected productsExternal IDs
vendor: lenovo model: bios
vendor: lenovo model: system
vendor: lenovo model: desktop
vendor: lenovo model: updates
db: NVD ids: CVE-2024-0762