VARIoT news about IoT security

Trust: 3.5

Fetched: June 7, 2024, 9:17 a.m., Published: May 7, 2024, midnight
Vulnerabilities: path traversal, cross-site scripting, improper access control...
Affected productsExternal IDs
db: NVD ids: CVE-2024-35244, CVE-2024-33610, CVE-2024-34162, CVE-2024-33605, CVE-2024-33616, CVE-2024-36254, CVE-2024-28955, CVE-2024-32151, CVE-2024-28038, CVE-2024-36248, CVE-2024-36251, CVE-2024-29978, CVE-2024-29146, CVE-2024-36249

Trust: 3.5

Fetched: June 7, 2024, 9:16 a.m., Published: Feb. 20, 2023, 7:19 a.m.
Vulnerabilities: code execution, denial of service, privilege escalation
Affected productsExternal IDs
vendor: essential model: phone

Trust: 4.75

Fetched: June 7, 2024, 9:13 a.m., Published: June 6, 2024, 4:47 p.m.
Vulnerabilities: code execution, privilege escalation, code injection
Affected productsExternal IDs
vendor: zyxel model: nas542
vendor: zyxel model: nas326
db: NVD ids: CVE-2024-29973, CVE-2024-29976, CVE-2024-29975, CVE-2024-29974, CVE-2024-29972, CVE-2023-27992
Related entries in the VARIoT vulnerabilities database: VAR-201601-0030

Trust: 3.0

Fetched: June 7, 2024, 9:10 a.m., Published: May 30, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2013-1489, CVE-2016-0778

Trust: 5.25

Fetched: June 7, 2024, 9:10 a.m., Published: June 5, 2024, 10:09 a.m.
Vulnerabilities: code execution, command injection, command execution
Affected productsExternal IDs
vendor: zyxel model: nas542
vendor: zyxel model: nas326
db: NVD ids: CVE-2024-29973, CVE-2024-29976, CVE-2024-29975, CVE-2024-29974, CVE-2024-29972
Related entries in the VARIoT vulnerabilities database: VAR-202002-0458

Trust: 4.75

Fetched: June 7, 2024, 9:08 a.m., Published: Feb. 26, 2020, 3 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: huawei model: hg8245h
vendor: huawei model: huawei
vendor: xiaomi model: redmi
vendor: samsung model: galaxy
vendor: samsung model: galaxy s4
vendor: samsung model: galaxy s8
vendor: samsung model: samsung galaxy
vendor: apple model: iphone
vendor: apple model: apple ipad
vendor: apple model: macos
vendor: apple model: macbook
vendor: apple model: ipad
vendor: apple model: macbook air
vendor: google model: nexus
vendor: google model: android
vendor: asus model: routers
vendor: asus model: wireless routers
vendor: asus model: rt-n12
vendor: asus model: asus
vendor: raspberry pi model: raspberry pi 3
db: NVD ids: CVE-2019-15126

Trust: 5.0

Fetched: June 5, 2024, 9:29 a.m., Published: June 4, 2024, 5:28 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: zyxel model: nas326
vendor: zyxel model: nas542
db: NVD ids: CVE-2024-29974, CVE-2024-29973, CVE-2024-29972

Trust: 5.5

Fetched: June 5, 2024, 9:04 a.m., Published: June 4, 2024, 9:08 a.m.
Vulnerabilities: code execution, command injection, privilege management vulnerability
Affected productsExternal IDs
vendor: zyxel model: nas326
vendor: zyxel model: nas542
db: NVD ids: CVE-2024-29973, CVE-2024-29974, CVE-2024-29972, CVE-2024-29975, CVE-2024-29976

Trust: 3.0

Fetched: June 4, 2024, 10:02 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 4.5

Fetched: June 4, 2024, 9:56 a.m., Published: May 20, 2024, midnight
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2020-6977, CVE-2024-1628

Trust: 5.0

Fetched: June 4, 2024, 9:56 a.m., Published: June 6, 2024, midnight
Vulnerabilities: path traversal
Affected productsExternal IDs
db: NVD ids: CVE-2024-1629

Trust: 4.75

Fetched: June 4, 2024, 9:55 a.m., Published: May 27, 2024, 9:25 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2024-5274

Trust: 3.75

Fetched: June 4, 2024, 9:54 a.m., Published: May 21, 2024, 8:26 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: wireshark model: wireshark
db: NVD ids: CVE-1999-0520, CVE-1999-0519

Trust: 3.75

Fetched: June 4, 2024, 9:52 a.m., Published: June 4, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
vendor: check point model: security gateway
vendor: check point model: check point
vendor: checkpoint model: security gateway
vendor: checkpoint model: check point
db: NVD ids: CVE-2024-24919
Related entries in the VARIoT vulnerabilities database: VAR-202405-0458

Trust: 3.75

Fetched: June 4, 2024, 9:51 a.m., Published: May 16, 2024, 4 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: palo model: firewall
vendor: palo model: pan-os
vendor: palo model: networks
vendor: palo alto networks model: firewall
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: networks
vendor: apple model: macos
vendor: paloaltonetworks model: firewall
vendor: paloaltonetworks model: pan-os
vendor: paloaltonetworks model: networks
db: NVD ids: CVE-2024-3661

Trust: 6.0

Fetched: June 4, 2024, 9:51 a.m., Published: May 15, 2024, 1:36 p.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: roku model: roku
db: NVD ids: CVE-2023-6321, CVE-2023-6322, CVE-2023-6324, CVE-2023-6323

Trust: 4.25

Fetched: June 4, 2024, 9:50 a.m., Published: May 27, 2024, 4:12 p.m.
Vulnerabilities: memory corruption, code execution, denial of service
Affected productsExternal IDs
vendor: tesla model: model 3
vendor: tesla model: model
db: NVD ids: CVE-2024-27130

Trust: 4.25

Fetched: June 4, 2024, 9:50 a.m., Published: June 3, 2024, 2:04 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: alsa model: alsa
db: NVD ids: CVE-2024-36955

Trust: 4.25

Fetched: June 4, 2024, 9:49 a.m., Published: May 30, 2024, 3:03 p.m.
Vulnerabilities: kernel panic
Affected productsExternal IDs
db: NVD ids: CVE-2024-36022

Trust: 3.0

Fetched: June 4, 2024, 9:47 a.m., Published: May 30, 2024, 4:17 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-1275