VARIoT news about IoT security

Trust: 3.5

Fetched: Nov. 24, 2024, 9:23 a.m., Published: Nov. 5, 2024, 5:50 p.m.
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 3.5

Fetched: Nov. 24, 2024, 9:20 a.m., Published: Feb. 1, 2024, 8:37 p.m.
Vulnerabilities: denial of service, validation bypass, code execution...
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202411-0368

Trust: 5.5

Fetched: Nov. 24, 2024, 9:17 a.m., Published: Nov. 10, 2024, 2 p.m.
Vulnerabilities: os command injection, command injection
Affected productsExternal IDs
vendor: d-link model: dns-320lw
vendor: d-link model: dns-320
vendor: d-link model: dns-340l
vendor: d-link model: dns-325
db: NVD ids: CVE-2024-10915

Trust: 3.5

Fetched: Nov. 24, 2024, 9:16 a.m., Published: Oct. 14, 2024, 12:53 p.m.
Vulnerabilities: sql injection, cross-site scripting
Affected productsExternal IDs

Trust: 3.5

Fetched: Nov. 22, 2024, 10:40 a.m., Published: Nov. 26, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security

Trust: 4.5

Fetched: Nov. 22, 2024, 10:38 a.m., Published: Nov. 19, 2024, 8:44 p.m.
Vulnerabilities: cross-site scripting, code execution
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: safari
vendor: apple model: software update
vendor: apple model: iphone

Trust: 5.25

Fetched: Nov. 22, 2024, 10:38 a.m., Published: Nov. 20, 2024, 2:38 p.m.
Vulnerabilities: cross-site scripting, code execution
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: safari
vendor: apple model: iphone
vendor: google model: android
vendor: google model: home
db: NVD ids: CVE-2024-44308, CVE-2024-44309

Trust: 3.5

Fetched: Nov. 22, 2024, 10:37 a.m., Published: Nov. 3, 2024, 8 a.m.
Vulnerabilities: configuration error, sql injection
Affected productsExternal IDs
vendor: essential model: phone

Trust: 5.5

Fetched: Nov. 22, 2024, 10:34 a.m., Published: Nov. 20, 2024, 5:12 a.m.
Vulnerabilities: cross-site scripting, code execution
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: safari
db: NVD ids: CVE-2024-44308, CVE-2024-44309

Trust: 4.5

Fetched: Nov. 22, 2024, 10:34 a.m., Published: Nov. 20, 2024, 7:38 p.m.
Vulnerabilities: cross-site scripting, code execution
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: safari
vendor: apple model: webkit
vendor: samsung model: galaxy
vendor: samsung model: samsung galaxy
vendor: samsung model: samsung
db: NVD ids: CVE-2024-44308, CVE-2024-44309

Trust: 3.75

Fetched: Nov. 22, 2024, 10:33 a.m., Published: -
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: snort model: snort
Related entries in the VARIoT vulnerabilities database: VAR-201908-0702, VAR-201908-0712, VAR-201908-0701, VAR-201908-0704

Trust: 5.5

Fetched: Nov. 22, 2024, 10:33 a.m., Published: Oct. 29, 2024, 9:32 a.m.
Vulnerabilities: command injection, brute force attack
Affected productsExternal IDs
vendor: cisco model: series
vendor: treck model: tcp/ip stack
vendor: siemens model: siprotec 5
vendor: siemens model: siprotec
vendor: siemens model: ruggedcom
db: NVD ids: CVE-2019-12261, CVE-2019-12255, CVE-2019-12260, CVE-2020-11910, CVE-2020-11900, CVE-2024-8517, CVE-2024-7029, CVE-2024-38816, CVE-2019-12263, CVE-2024-4577, CVE-2020-11899, CVE-2024-36401

Trust: 5.5

Fetched: Nov. 22, 2024, 10:32 a.m., Published: Nov. 11, 2024, midnight
Vulnerabilities: cross-site scripting, code execution
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: safari
db: NVD ids: CVE-2024-44308, CVE-2024-44309

Trust: 4.25

Fetched: Nov. 22, 2024, 10:28 a.m., Published: Nov. 18, 2024, 7:22 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: palo model: pan-os
db: NVD ids: CVE-2024-0012, CVE-2024-9474

Trust: 3.75

Fetched: Nov. 22, 2024, 10:28 a.m., Published: March 1, 2024, 2:38 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.75

Fetched: Nov. 22, 2024, 10:27 a.m., Published: Oct. 28, 2024, 11:19 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: updates
vendor: lenovo model: system
db: NVD ids: CVE-2024-40432, CVE-2024-40431, CVE-2022-25478, CVE-2022-25480, CVE-2022-25477, CVE-2022-25479

Trust: 5.5

Fetched: Nov. 22, 2024, 10:27 a.m., Published: -
Vulnerabilities: cross-site scripting, code execution
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: ipad air
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: safari
vendor: apple model: iphone
db: NVD ids: CVE-2024-44308, CVE-2024-44309

Trust: 5.5

Fetched: Nov. 22, 2024, 10:25 a.m., Published: Nov. 6, 2024, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: synology model: diskstation manager
vendor: synology model: diskstation
db: NVD ids: CVE-2024-10443

Trust: 4.75

Fetched: Nov. 22, 2024, 10:23 a.m., Published: Nov. 20, 2024, noon
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: safari
db: NVD ids: CVE-2024-44308, CVE-2024-44309

Trust: 4.5

Fetched: Nov. 22, 2024, 10:22 a.m., Published: Jan. 18, 2001, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: ipad air
vendor: apple model: iphone
db: NVD ids: CVE-2024-44308, CVE-2024-44309