VARIoT news about IoT security

Trust: 3.0

Fetched: Aug. 13, 2024, 9:27 a.m., Published: Aug. 13, 2024, 6:25 a.m.
Vulnerabilities: system crash, denial of service, improper validation
Affected productsExternal IDs
db: NVD ids: CVE-2024-6768

Trust: 4.0

Fetched: Aug. 13, 2024, 9:24 a.m., Published: Aug. 8, 2024, 6:48 a.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: google model: android

Trust: 5.75

Fetched: Aug. 13, 2024, 9:24 a.m., Published: July 19, 2024, midnight
Vulnerabilities: directory traversal
Affected productsExternal IDs
vendor: d-link model: dap-1650 firmware
vendor: d-link model: dap-1650_firmware
vendor: d-link model: dap-1650
vendor: dlink model: dap-1650 firmware
vendor: dlink model: dap-1650_firmware
vendor: dlink model: dap-1650
db: NVD ids: CVE-2024-40505

Trust: 4.75

Fetched: Aug. 13, 2024, 9:24 a.m., Published: Aug. 2, 2024, midnight
Vulnerabilities: command execution
Affected productsExternal IDs
vendor: enphase model: envoy
db: NVD ids: CVE-2024-21878, CVE-2020-25754

Trust: 5.75

Fetched: Aug. 13, 2024, 9:18 a.m., Published: -
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2024-36971, CVE-2024-23350

Trust: 5.25

Fetched: Aug. 13, 2024, 9:16 a.m., Published: July 30, 2024, 7:17 a.m.
Vulnerabilities: request forgery, information disclosure, command injection...
Affected productsExternal IDs
vendor: epson model: connect
vendor: zoom model: client
db: NVD ids: CVE-2019-20460, CVE-2020-11923, CVE-2019-20467, CVE-2020-11925, CVE-2020-11915, CVE-2019-20463, CVE-2020-11916, CVE-2019-20464, CVE-2020-11924, CVE-2019-20472, CVE-2019-20473, CVE-2019-20462, CVE-2020-11920, CVE-2019-20458, CVE-2019-20461, CVE-2019-20469, CVE-2020-11922, CVE-2019-20459, CVE-2019-20466, CVE-2019-20471, CVE-2019-20465, CVE-2020-11918, CVE-2020-11917, CVE-2019-20470, CVE-2020-11921, CVE-2019-20457, CVE-2019-20468, CVE-2020-11926, CVE-2020-11919

Trust: 3.0

Fetched: Aug. 13, 2024, 9:16 a.m., Published: Aug. 9, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: cisco identity services engine
vendor: cisco model: identity services engine

Trust: 5.75

Fetched: Aug. 13, 2024, 9:15 a.m., Published: Aug. 12, 2024, 8:48 a.m.
Vulnerabilities: directory traversal
Affected productsExternal IDs
vendor: samsung model: samsung
vendor: google model: android
vendor: google model: chrome os
vendor: google model: chrome
db: NVD ids: CVE-2024-38271, CVE-2024-38272

Trust: 4.75

Fetched: Aug. 13, 2024, 9:14 a.m., Published: -
Vulnerabilities: script execution
Affected productsExternal IDs
vendor: ring model: ring
Related entries in the VARIoT vulnerabilities database: VAR-202408-2138

Trust: 5.5

Fetched: Aug. 13, 2024, 9:13 a.m., Published: Aug. 12, 2024, 9:51 a.m.
Vulnerabilities: code execution, improper memory management, denial of service...
Affected productsExternal IDs
vendor: oneplus model: oneplus
vendor: oneplus model: one
vendor: google model: android
vendor: samsung model: mobile
vendor: samsung model: samsung
db: NVD ids: CVE-2024-21481, CVE-2024-21479, CVE-2024-23350, CVE-2024-23352, CVE-2024-23353

Trust: 3.0

Fetched: Aug. 13, 2024, 9:13 a.m., Published: Aug. 8, 2024, 8:18 a.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs

Trust: 3.25

Fetched: Aug. 13, 2024, 9:12 a.m., Published: Aug. 12, 2024, 12:40 p.m.
Vulnerabilities: password decryption, command injection, cross-site scripting...
Affected productsExternal IDs
vendor: ewon model: ewon
vendor: dropbear model: dropbear ssh
Related entries in the VARIoT vulnerabilities database: VAR-202201-0295

Trust: 4.5

Fetched: Aug. 13, 2024, 9:11 a.m., Published: Nov. 17, 2023, 11:26 a.m.
Vulnerabilities: cross-site scripting, request forgery, information disclosure...
Affected productsExternal IDs
db: NVD ids: CVE-2023-47577, CVE-2023-47573, CVE-2023-47576, CVE-2023-47579, CVE-2021-44142, CVE-2023-47574, CVE-2017-7494, CVE-2023-47578, CVE-2015-3200, CVE-2023-47575
Related entries in the VARIoT vulnerabilities database: VAR-202406-1682, VAR-202406-2467

Trust: 3.0

Fetched: Aug. 13, 2024, 9:09 a.m., Published: May 24, 2000, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-29168, CVE-2024-29169

Trust: 3.0

Fetched: Aug. 13, 2024, 9:09 a.m., Published: May 13, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 4.75

Fetched: Aug. 13, 2024, 9:09 a.m., Published: Aug. 1, 2024, midnight
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: checkpoint model: check point
vendor: checkpoint model: check point vpn
vendor: checkpoint model: security gateway
vendor: check point model: check point
vendor: check point model: check point vpn
vendor: check point model: security gateway
db: NVD ids: CVE-2024-24919

Trust: 4.75

Fetched: Aug. 13, 2024, 9:08 a.m., Published: Aug. 1, 2024, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2006-5051, CVE-2024-3400, CVE-2024-6387, CVE-2008-4109

Trust: 4.5

Fetched: Aug. 13, 2024, 9:07 a.m., Published: Aug. 3, 2024, midnight
Vulnerabilities: buffer overflow, command execution, code execution
Affected productsExternal IDs
vendor: roku model: roku
db: NVD ids: CVE-2023-6323, CVE-2023-6324, CVE-2023-6321, CVE-2023-6322

Trust: 4.5

Fetched: Aug. 13, 2024, 9:07 a.m., Published: Aug. 3, 2024, midnight
Vulnerabilities: buffer overflow, command execution, code execution
Affected productsExternal IDs
vendor: roku model: roku
db: NVD ids: CVE-2023-6323, CVE-2023-6324, CVE-2023-6321, CVE-2023-6322

Trust: 5.75

Fetched: Aug. 11, 2024, 9:38 a.m., Published: Aug. 7, 2024, 11:46 a.m.
Vulnerabilities: information disclosure, memory corruption, privilege escalation
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2024-36971, CVE-2024-23350