VARIoT news about IoT security

Trust: 5.0

Fetched: May 31, 2024, 10:01 a.m., Published: May 21, 2024, 12:23 p.m.
Vulnerabilities: sql injection
Affected productsExternal IDs
db: NVD ids: CVE-2023-3942

Trust: 3.75

Fetched: May 31, 2024, 10:01 a.m., Published: May 7, 2024, 5:33 a.m.
Vulnerabilities: memory corruption
Affected productsExternal IDs
vendor: google model: android
vendor: samsung model: galaxy

Trust: 4.5

Fetched: May 31, 2024, 9:58 a.m., Published: May 30, 2024, 3:45 p.m.
Vulnerabilities: traversal attack, path traversal, information disclosure
Affected productsExternal IDs
vendor: check point model: check point
vendor: check point model: security gateway
vendor: check point model: quantum security gateway
vendor: check point model: check point vpn
db: NVD ids: CVE-2024-24919

Trust: 5.5

Fetched: May 31, 2024, 9:53 a.m., Published: May 3, 2024, 4:50 a.m.
Vulnerabilities: code execution, buffer overflow
Affected productsExternal IDs
vendor: aruba model: arubaos
vendor: aruba networks model: arubaos
db: NVD ids: CVE-2024-33511, CVE-2024-26304, CVE-2024-26305, CVE-2024-33512

Trust: 3.0

Fetched: May 31, 2024, 9:53 a.m., Published: April 30, 2019, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 3.75

Fetched: May 31, 2024, 9:52 a.m., Published: May 30, 2024, 12:55 p.m.
Vulnerabilities: command injection, default credentials
Affected productsExternal IDs
vendor: tp-link model: routers

Trust: 5.0

Fetched: May 31, 2024, 9:51 a.m., Published: May 10, 2024, 5:02 p.m.
Vulnerabilities: use after free
Affected productsExternal IDs
vendor: google model: chrome
db: NVD ids: CVE-2024-4671

Trust: 3.0

Fetched: May 31, 2024, 9:51 a.m., Published: May 6, 2024, 9:10 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 3.5

Fetched: May 31, 2024, 9:46 a.m., Published: March 7, 2024, 2:20 p.m.
Vulnerabilities: sql injection, cross-site scripting, brute force attack...
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-201801-1708

Trust: 3.5

Fetched: May 31, 2024, 9:44 a.m., Published: Aug. 16, 2024, midnight
Vulnerabilities: information exposure, privilege escalation, system crash
Affected productsExternal IDs
db: NVD ids: CVE-2016-10229, CVE-2014-2523, CVE-2016-10150, CVE-2017-18017, CVE-2015-8812

Trust: 4.75

Fetched: May 31, 2024, 9:44 a.m., Published: May 27, 2024, 2:23 a.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: wireshark model: wireshark

Trust: 3.75

Fetched: May 31, 2024, 9:43 a.m., Published: May 29, 2024, 1:23 p.m.
Vulnerabilities: command injection, default credentials
Affected productsExternal IDs
vendor: tp-link model: routers

Trust: 3.0

Fetched: May 31, 2024, 9:36 a.m., Published: May 3, 2024, midnight
Vulnerabilities: privilege escalation, denial of service
Affected productsExternal IDs

Trust: 3.75

Fetched: May 31, 2024, 9:36 a.m., Published: May 31, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: check point model: check point
db: NVD ids: CVE-2024-24919

Trust: 4.5

Fetched: May 31, 2024, 9:35 a.m., Published: May 30, 2024, 3:48 p.m.
Vulnerabilities: default password, weak password
Affected productsExternal IDs
vendor: trend model: security
db: NVD ids: CVE-2023-6448
Related entries in the VARIoT vulnerabilities database: VAR-201202-0163, VAR-201202-0162, VAR-201202-0164

Trust: 4.5

Fetched: May 31, 2024, 9:31 a.m., Published: Nov. 30, 2020, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: paloaltonetworks model: pan-os
vendor: trend model: security
vendor: codesys model: codesys
vendor: codesys model: control
vendor: trend micro model: security
vendor: google model: android
vendor: google model: home
vendor: essential model: phone
vendor: cisco model: router
vendor: cisco model: routers
db: NVD ids: CVE-2011-4876, CVE-2010-1677, CVE-2011-4875, CVE-2011-4877
Related entries in the VARIoT vulnerabilities database: VAR-202203-1506, VAR-202203-0233

Trust: 4.75

Fetched: May 31, 2024, 9:29 a.m., Published: April 5, 2022, 1:11 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-22965, CVE-2010-1622, CVE-2022-22963, CVE-2022-22947
Related entries in the VARIoT vulnerabilities database: VAR-202404-0070, VAR-202404-0069

Trust: 4.5

Fetched: May 31, 2024, 9:28 a.m., Published: April 8, 2024, midnight
Vulnerabilities: command injection, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-3273, CVE-2024-3272
Related entries in the VARIoT vulnerabilities database: VAR-202404-0070, VAR-202404-0069

Trust: 4.75

Fetched: May 31, 2024, 9:28 a.m., Published: April 10, 2024, 2:53 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: d-link model: dns-320l
vendor: d-link model: dns-327l
vendor: d-link model: dns-325
vendor: d-link model: dns-340l
vendor: dlink model: dns-320l
vendor: dlink model: dns-327l
vendor: dlink model: dns-325
vendor: dlink model: dns-340l
db: NVD ids: CVE-2024-3273, CVE-2024-3272
Related entries in the VARIoT vulnerabilities database: VAR-202404-0069

Trust: 6.0

Fetched: May 31, 2024, 9:16 a.m., Published: -
Vulnerabilities: command execution
Affected productsExternal IDs
vendor: d-link model: dns-320l
vendor: d-link model: dns-327l
vendor: d-link model: dns-325
vendor: d-link model: dns-340l
db: NVD ids: CVE-2024-3272