VARIoT news about IoT security

Trust: 3.75

Fetched: Jan. 8, 2025, 9:07 a.m., Published: May 8, 2025, midnight
Vulnerabilities: improper validation, code injection, request forgery...
Affected productsExternal IDs
db: NVD ids: CVE-2024-48840, CVE-2024-6298, CVE-2024-6209, CVE-2024-48839

Trust: 3.75

Fetched: Jan. 8, 2025, 9:07 a.m., Published: Jan. 8, 2025, 7:37 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security
db: NVD ids: CVE-2024-40766

Trust: 4.25

Fetched: Jan. 7, 2025, 9:50 a.m., Published: May 7, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: huawei model: huawei
db: NVD ids: CVE-2020-1819, CVE-2020-1820, CVE-2020-1824, CVE-2020-1823, CVE-2020-1818, CVE-2020-1822, CVE-2020-1821

Trust: 3.75

Fetched: Jan. 7, 2025, 9:47 a.m., Published: Dec. 10, 2024, 4:55 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: mesh model: mesh

Trust: 5.5

Fetched: Jan. 7, 2025, 9:45 a.m., Published: Jan. 6, 2025, 6 p.m.
Vulnerabilities: os command injection, command injection, validation bypass...
Affected productsExternal IDs
vendor: moxa model: edr-g903
vendor: moxa model: edr-g903 series
vendor: moxa model: edr-810 series
vendor: moxa model: edr-810
db: NVD ids: CVE-2024-9138, CVE-2024-9140

Trust: 6.0

Fetched: Jan. 7, 2025, 9:44 a.m., Published: Jan. 7, 7149, midnight
Vulnerabilities: system crash, denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu
db: NVD ids: CVE-2024-23918, CVE-2024-21853, CVE-2024-21820, CVE-2024-23984, CVE-2024-24968

Trust: 6.0

Fetched: Jan. 7, 2025, 9:43 a.m., Published: Dec. 12, 2024, midnight
Vulnerabilities: application crash, pointer dereference vulnerability
Affected productsExternal IDs
vendor: huawei model: huawei
db: NVD ids: CVE-2024-54106

Trust: 4.0

Fetched: Jan. 7, 2025, 9:42 a.m., Published: Dec. 13, 2024, 4:48 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-54143

Trust: 3.5

Fetched: Jan. 7, 2025, 9:41 a.m., Published: Dec. 16, 2024, 2:09 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: palo alto networks model: networks
vendor: trend model: security
vendor: palo model: networks
db: NVD ids: CVE-2018-15961, CVE-2020-14882, CVE-2024-9474, CVE-2024-47575, CVE-2024-0012

Trust: 5.0

Fetched: Jan. 7, 2025, 9:41 a.m., Published: Jan. 7, 2025, 7:06 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2024-43096, CVE-2024-43770, CVE-2024-43771, CVE-2024-49747, CVE-2024-49748

Trust: 6.25

Fetched: Jan. 7, 2025, 9:40 a.m., Published: Jan. 7, 7150, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu
db: NVD ids: CVE-2024-52804, CVE-2023-28370

Trust: 3.25

Fetched: Jan. 7, 2025, 9:38 a.m., Published: Jan. 7, 7156, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 4.25

Fetched: Jan. 7, 2025, 9:37 a.m., Published: Dec. 17, 2024, 11:20 a.m.
Vulnerabilities: cross-site scripting, sql injection
Affected productsExternal IDs
vendor: palo alto networks model: networks
vendor: palo model: networks

Trust: 5.5

Fetched: Jan. 7, 2025, 9:36 a.m., Published: Jan. 7, 2025, 4:34 a.m.
Vulnerabilities: os command injection, command injection, privilege escalation...
Affected productsExternal IDs
vendor: moxa model: edr-g903
vendor: moxa model: edr-g903 series
vendor: moxa model: edr-810 series
vendor: moxa model: edr-810
db: NVD ids: CVE-2024-9138, CVE-2024-9140

Trust: 4.75

Fetched: Jan. 7, 2025, 9:35 a.m., Published: Dec. 19, 2024, 3:21 p.m.
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 3.5

Fetched: Jan. 7, 2025, 9:27 a.m., Published: Oct. 28, 2024, 6:03 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2020-6007
Related entries in the VARIoT vulnerabilities database: VAR-202004-2191, VAR-202004-2199

Trust: 3.75

Fetched: Jan. 7, 2025, 9:26 a.m., Published: May 7, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: lexmark model: lexmark
vendor: jquery model: jquery
db: NVD ids: CVE-2020-7656, CVE-2020-11022, CVE-2020-11023

Trust: 5.5

Fetched: Jan. 7, 2025, 9:26 a.m., Published: Nov. 1, 2024, 4:14 p.m.
Vulnerabilities: improper access control, integer overflow, access control vulnerability
Affected productsExternal IDs
vendor: sonicwall model: remote access
vendor: sonicwall model: ssl vpn
vendor: sonicwall model: sonicos
vendor: litespeed model: litespeed web server
db: NVD ids: CVE-2024-9264, CVE-2024-51567, CVE-2024-51568, CVE-2024-23113, CVE-2024-40766, CVE-2024-46483, CVE-2024-47575

Trust: 3.75

Fetched: Jan. 7, 2025, 9:25 a.m., Published: Oct. 8, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: mobile devices
vendor: samsung model: mobile phones
vendor: samsung model: mobile
vendor: samsung model: samsung
vendor: google model: android
db: NVD ids: CVE-2024-43047

Trust: 4.0

Fetched: Jan. 7, 2025, 9:25 a.m., Published: Oct. 23, 2024, 3:57 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: firepower threat defense software
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: series
vendor: cisco model: series industrial security appliances
vendor: cisco model: adaptive security appliance
vendor: cisco model: asa software
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense