VARIoT news about IoT security

Trust: 4.25

Fetched: May 29, 2024, 9:46 a.m., Published: May 25, 2024, 8:02 a.m.
Vulnerabilities: sql injection
Affected productsExternal IDs
vendor: essential model: phone
vendor: wireshark model: wireshark
vendor: snort model: snort
vendor: cisco model: routers

Trust: 3.75

Fetched: May 29, 2024, 9:43 a.m., Published: May 29, 2024, 5:59 a.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: google model: wifi
vendor: google model: chrome
vendor: google model: google chrome
vendor: google model: wi-fi router
vendor: google model: home
vendor: tp-link model: routers

Trust: 3.25

Fetched: May 29, 2024, 9:42 a.m., Published: May 29, 2024, 9:41 a.m.
Vulnerabilities: default password, code execution, privilege escalation...
Affected productsExternal IDs
vendor: essential model: phone
vendor: check point model: check point
vendor: check point model: express
vendor: google model: android

Trust: 4.75

Fetched: May 29, 2024, 9:38 a.m., Published: May 29, 2024, midnight
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: paloaltonetworks model: networks
vendor: paloaltonetworks model: pan-os
vendor: paloaltonetworks model: firewall
db: NVD ids: CVE-2024-3400

Trust: 5.0

Fetched: May 29, 2024, 9:36 a.m., Published: May 29, 2024, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower threat defense
vendor: cisco model: firepower
vendor: cisco model: cisco adaptive security appliance
db: NVD ids: CVE-2024-20358, CVE-2024-20353, CVE-2024-20359

Trust: 5.5

Fetched: May 29, 2024, 9:36 a.m., Published: April 12, 2024, 6:55 a.m.
Vulnerabilities: file creation vulnerability, command injection
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: paloaltonetworks model: networks
vendor: paloaltonetworks model: pan-os
vendor: paloaltonetworks model: firewall
db: NVD ids: CVE-2024-3400

Trust: 5.5

Fetched: May 29, 2024, 9:36 a.m., Published: May 29, 2024, midnight
Vulnerabilities: command execution, code execution, directory traversal...
Affected productsExternal IDs
vendor: palo model: networks globalprotect
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo model: palo alto networks globalprotect
vendor: palo alto networks model: networks globalprotect
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: palo alto networks globalprotect
vendor: check point model: check point
vendor: paloaltonetworks model: networks globalprotect
vendor: paloaltonetworks model: pan-os
vendor: paloaltonetworks model: firewall
vendor: paloaltonetworks model: networks
vendor: paloaltonetworks model: palo alto networks globalprotect
vendor: snort model: snort
db: NVD ids: CVE-2024-3400

Trust: 4.5

Fetched: May 29, 2024, 9:35 a.m., Published: April 4, 2024, 11:56 a.m.
Vulnerabilities: heap corruption, code execution, information disclosure...
Affected productsExternal IDs
vendor: google model: chrome
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2024-29745, CVE-2023-28582, CVE-2024-29748, CVE-2024-29740, CVE-2024-3159

Trust: 5.25

Fetched: May 29, 2024, 9:35 a.m., Published: May 29, 2024, midnight
Vulnerabilities: os command injection, command injection
Affected productsExternal IDs
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
vendor: paloaltonetworks model: pan-os
vendor: paloaltonetworks model: firewall
vendor: paloaltonetworks model: networks
db: NVD ids: CVE-2024-3400

Trust: 4.25

Fetched: May 29, 2024, 9:34 a.m., Published: May 29, 2023, midnight
Vulnerabilities: buffer overflow, path traversal
Affected productsExternal IDs
vendor: c-more model: hmi ea9
vendor: automationdirect model: c-more
db: NVD ids: CVE-2024-25136, CVE-2024-25138, CVE-2024-25137
Related entries in the VARIoT vulnerabilities database: VAR-202404-0070

Trust: 4.0

Fetched: May 29, 2024, 9:32 a.m., Published: May 29, 2024, midnight
Vulnerabilities: command execution, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-3273

Trust: 3.5

Fetched: May 29, 2024, 9:31 a.m., Published: April 2, 2024, 1:46 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: essential model: phone

Trust: 4.25

Fetched: May 29, 2024, 9:30 a.m., Published: Feb. 29, 2024, midnight
Vulnerabilities: data forgery

Trust: 4.5

Fetched: May 29, 2024, 9:30 a.m., Published: April 8, 2024, 11:27 a.m.
Vulnerabilities: denial of service, command injection, default password
Affected productsExternal IDs
vendor: d-link model: dns-325
vendor: d-link model: dns-340l
vendor: d-link model: dns-320l

Trust: 4.25

Fetched: May 29, 2024, 9:29 a.m., Published: March 18, 2024, 5:08 p.m.
Vulnerabilities: denial of service, resource exhaustion, buffer overflow
Affected productsExternal IDs
vendor: parallels model: tools
vendor: sony model: playstation

Trust: 4.5

Fetched: May 29, 2024, 9:28 a.m., Published: April 12, 2024, 12:59 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
db: NVD ids: CVE-2024-3400

Trust: 5.25

Fetched: May 29, 2024, 9:27 a.m., Published: May 20, 2024, 3:04 p.m.
Vulnerabilities: command execution, command injection
Affected productsExternal IDs
vendor: palo model: networks globalprotect
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo model: palo alto networks globalprotect
vendor: palo alto networks model: networks globalprotect
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: palo alto networks globalprotect
db: NVD ids: CVE-2024-3400

Trust: 5.25

Fetched: May 29, 2024, 9:26 a.m., Published: April 15, 2024, 11:10 a.m.
Vulnerabilities: os command injection, command injection, code execution
Affected productsExternal IDs
vendor: google model: chrome
vendor: palo model: networks globalprotect
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo model: palo alto networks globalprotect
vendor: palo alto networks model: networks globalprotect
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: palo alto networks globalprotect
db: NVD ids: CVE-2024-3400

Trust: 5.5

Fetched: May 29, 2024, 9:26 a.m., Published: May 30, 2024, midnight
Vulnerabilities: os command injection, command injection, code execution
Affected productsExternal IDs
vendor: palo model: networks globalprotect
vendor: palo model: pan-os
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo model: palo alto networks globalprotect
vendor: palo alto networks model: networks globalprotect
vendor: palo alto networks model: pan-os
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: palo alto networks globalprotect
vendor: paloaltonetworks model: networks globalprotect
vendor: paloaltonetworks model: pan-os
vendor: paloaltonetworks model: firewall
vendor: paloaltonetworks model: networks
vendor: paloaltonetworks model: palo alto networks globalprotect
vendor: google model: chrome
vendor: google model: google chrome
db: NVD ids: CVE-2024-3400

Trust: 3.75

Fetched: May 29, 2024, 9:25 a.m., Published: March 27, 2024, 3:55 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: ios xe software
vendor: cisco model: ios xe
vendor: cisco model: cisco ios