VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202409-1099, VAR-202409-1026, VAR-202409-0703

Trust: 5.0

Fetched: Sept. 17, 2024, 9:26 a.m., Published: Sept. 17, 2024, midnight
Vulnerabilities: code execution, input validation vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2024-45697, CVE-2024-45698, CVE-2024-45694, CVE-2024-45696, CVE-2024-45695

Trust: 4.0

Fetched: Sept. 17, 2024, 9:25 a.m., Published: Sept. 5, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
db: NVD ids: CVE-2024-6387

Trust: 3.25

Fetched: Sept. 17, 2024, 9:25 a.m., Published: Sept. 10, 2024, 4:15 p.m.
Vulnerabilities: sql injection, default credentials, denial of service
Affected productsExternal IDs

Trust: 4.5

Fetched: Sept. 17, 2024, 9:23 a.m., Published: Aug. 13, 2024, 8:31 p.m.
Vulnerabilities: request forgery, denial of service, code execution...
Affected productsExternal IDs
db: NVD ids: CVE-2024-38140, CVE-2024-38147, CVE-2024-38202, CVE-2024-38199, CVE-2024-38178, CVE-2024-21302, CVE-2024-38160, CVE-2024-38133, CVE-2024-38159, CVE-2024-38141, CVE-2024-38163, CVE-2024-38193, CVE-2024-38144, CVE-2024-38125, CVE-2024-38148, CVE-2024-38107, CVE-2024-38150, CVE-2024-38198, CVE-2024-38200, CVE-2024-38106, CVE-2024-38063, CVE-2024-38213, CVE-2024-38189, CVE-2024-38196
Related entries in the VARIoT vulnerabilities database: VAR-202309-2171

Trust: 5.5

Fetched: Sept. 17, 2024, 9:22 a.m., Published: July 2, 2024, 4 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: rockwell automation model: factorytalk view
vendor: rockwell automation model: automation panelview plus
vendor: rockwell automation model: automation panelview
vendor: rockwell automation model: rslogix
vendor: rockwell automation model: factorytalk
vendor: rockwell model: factorytalk view
vendor: rockwell model: automation panelview plus
vendor: rockwell model: automation panelview
vendor: rockwell model: rslogix
vendor: rockwell model: factorytalk
db: NVD ids: CVE-2023-2071

Trust: 4.5

Fetched: Sept. 17, 2024, 9:21 a.m., Published: Aug. 16, 2024, 12:53 p.m.
Vulnerabilities: code execution, code injection
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
vendor: essential model: phone

Trust: 3.0

Fetched: Sept. 17, 2024, 9:18 a.m., Published: July 29, 2024, 4 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-28252, CVE-2024-37085

Trust: 3.75

Fetched: Sept. 17, 2024, 9:17 a.m., Published: July 19, 2024, 5:21 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: samsung
vendor: samsung model: galaxy
vendor: google model: pixel
vendor: google model: android
db: NVD ids: CVE-2024-29745, CVE-2024-32896

Trust: 5.5

Fetched: Sept. 17, 2024, 9:16 a.m., Published: June 24, 2024, 2:33 p.m.
Vulnerabilities: code execution, privilege management vulnerability, command injection
Affected productsExternal IDs
vendor: zyxel model: nas542
vendor: zyxel model: nas326
db: NVD ids: CVE-2024-29973, CVE-2024-27793, CVE-2024-29972, CVE-2024-27794, CVE-2024-29974, CVE-2024-19976, CVE-2024-29975, CVE-2024-29976

Trust: 3.75

Fetched: Sept. 17, 2024, 9:15 a.m., Published: Sept. 16, 2024, 10:13 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: lenovo model: system
db: NVD ids: CVE-2024-8105

Trust: 3.25

Fetched: Sept. 16, 2024, 8:53 p.m., Published: Sept. 11, 2024, 3:14 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-45029

Trust: 3.0

Fetched: Sept. 16, 2024, 8:51 p.m., Published: Sept. 12, 2024, 1:46 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 3.0

Fetched: Sept. 16, 2024, 8:50 p.m., Published: Aug. 21, 2024, 8:45 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-43044, CVE-2024-43045

Trust: 4.25

Fetched: Sept. 16, 2024, 8:49 p.m., Published: Sept. 12, 2024, midnight
Vulnerabilities: weak password, code execution
Affected productsExternal IDs
vendor: ipswitch model: whatsup gold
vendor: ipswitch model: whatsup
vendor: trend micro model: security
vendor: trend model: security
db: NVD ids: CVE-2024-6670, CVE-2024-4885

Trust: 4.0

Fetched: Sept. 16, 2024, 8:48 p.m., Published: Sept. 8, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios
db: NVD ids: CVE-2024-39584
Related entries in the VARIoT vulnerabilities database: VAR-202109-1909

Trust: 3.5

Fetched: Sept. 16, 2024, 8:46 p.m., Published: Sept. 16, 2024, 1:56 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security
vendor: trend micro model: security
db: NVD ids: CVE-2024-43461, CVE-2021-40444, CVE-2024-38112

Trust: 4.75

Fetched: Sept. 16, 2024, 8:46 p.m., Published: Aug. 19, 2024, 7:39 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: android

Trust: 3.0

Fetched: Sept. 16, 2024, 8:42 p.m., Published: Sept. 16, 3560, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: latitude
vendor: dell model: bios

Trust: 3.0

Fetched: Sept. 16, 2024, 8:41 p.m., Published: Sept. 16, 2024, 2:15 p.m.
Vulnerabilities: weak password
Affected productsExternal IDs

Trust: 5.0

Fetched: Sept. 16, 2024, 8:41 p.m., Published: Nov. 27, 2023, 10:31 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2024-24974, CVE-2024-27459, CVE-2024-27903