VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202404-0069, VAR-202404-0070

Trust: 4.25

Fetched: May 7, 2024, 9:14 a.m., Published: April 16, 2024, 9 a.m.
Vulnerabilities: injection attack, command injection, code execution
Affected productsExternal IDs
vendor: d-link model: dns-327l
vendor: d-link model: dns-320l
vendor: d-link model: dns-325
vendor: d-link model: dns-340l
db: NVD ids: CVE-2024-3272, CVE-2024-3273
Related entries in the VARIoT vulnerabilities database: VAR-201502-0201

Trust: 4.25

Fetched: May 7, 2024, 9:13 a.m., Published: May 1, 2024, 3 p.m.
Vulnerabilities: command execution, code execution
Affected productsExternal IDs
vendor: d-link model: dir-645
vendor: d-link model: router
db: NVD ids: CVE-2015-2051
Related entries in the VARIoT vulnerabilities database: VAR-202404-1690, VAR-202404-1315

Trust: 4.5

Fetched: May 7, 2024, 9:12 a.m., Published: May 7, 2024, 6:15 a.m.
Vulnerabilities: authentication vulnerability, access control vulnerability, authentication bypass...
Affected productsExternal IDs
vendor: google model: android
vendor: samsung model: samsung galaxy
vendor: samsung model: galaxy
db: NVD ids: CVE-2024-21463, CVE-2024-23702, CVE-2023-33115, CVE-2024-20858, CVE-2024-20039, CVE-2024-21468, CVE-2024-20866, CVE-2023-33096, CVE-2024-0025, CVE-2024-20864, CVE-2024-20859, CVE-2024-23706, CVE-2023-33084, CVE-2024-20040, CVE-2023-33101, CVE-2024-20857, CVE-2024-20860, CVE-2024-0042, CVE-2024-21472, CVE-2024-23701, CVE-2024-20865, CVE-2024-20863, CVE-2023-33103, CVE-2024-20856, CVE-2024-23705, CVE-2024-23707, CVE-2024-23708, CVE-2024-0024, CVE-2023-33100, CVE-2023-33104, CVE-2024-20861, CVE-2024-23700, CVE-2024-20862, CVE-2024-23703, CVE-2024-20855, CVE-2023-33099, CVE-2024-20021, CVE-2023-28582, CVE-2024-0043, CVE-2023-33086, CVE-2024-23709, CVE-2023-33095

Trust: 4.75

Fetched: May 7, 2024, 9:12 a.m., Published: May 6, 2024, 7:54 a.m.
Vulnerabilities: path traversal
Affected productsExternal IDs
vendor: google model: home
vendor: google model: android

Trust: 3.75

Fetched: May 7, 2024, 9:11 a.m., Published: April 16, 2024, 10:18 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2020-26146, CVE-2020-24587, CVE-2020-26141, CVE-2020-26139, CVE-2020-26142, CVE-2020-26145, CVE-2020-24586, CVE-2020-24588, CVE-2020-26147, CVE-2020-26144, CVE-2020-26140, CVE-2020-26143
Related entries in the VARIoT vulnerabilities database: VAR-202404-0069, VAR-202404-0070

Trust: 4.25

Fetched: May 7, 2024, 9:10 a.m., Published: April 16, 2024, 12:53 p.m.
Vulnerabilities: injection attack, command injection, code execution
Affected productsExternal IDs
vendor: d-link model: dns-327l
vendor: d-link model: dns-320l
vendor: d-link model: dns-325
vendor: d-link model: dns-340l
db: NVD ids: CVE-2024-3272, CVE-2024-3273

Trust: 3.5

Fetched: May 7, 2024, 9:07 a.m., Published: June 4, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: chrome
vendor: google model: google chrome
db: NVD ids: CVE-2020-26971, CVE-2020-15992, CVE-2020-16011

Trust: 3.0

Fetched: May 7, 2024, 9:06 a.m., Published: May 7, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ip phones

Trust: 3.0

Fetched: May 7, 2024, 9:05 a.m., Published: May 13, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202005-0696

Trust: 3.75

Fetched: May 3, 2024, 10:42 a.m., Published: May 19, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: firepower
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: network access control
vendor: cisco model: asa software
vendor: cisco model: firepower threat defense
vendor: cisco model: adaptive security appliance
db: NVD ids: CVE-2024-20359, CVE-2020-3259, CVE-2024-20353
Related entries in the VARIoT vulnerabilities database: VAR-202404-0069, VAR-202404-0070

Trust: 4.75

Fetched: May 3, 2024, 10:38 a.m., Published: April 8, 2024, 6:56 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: d-link model: dns-325
vendor: d-link model: dns-320l
vendor: d-link model: dns-340l
vendor: d-link model: dns-327l
db: NVD ids: CVE-2024-3272, CVE-2024-3273

Trust: 5.0

Fetched: May 3, 2024, 10:32 a.m., Published: April 19, 2024, 6:06 p.m.
Vulnerabilities: cross-site scripting, denial of service
Affected productsExternal IDs
vendor: zoom model: client
db: NVD ids: CVE-2024-27242, CVE-2024-24694, CVE-2024-27247

Trust: 5.75

Fetched: May 3, 2024, 10:29 a.m., Published: April 3, 2024, midnight
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: d-link model: dap-2690_firmware
vendor: d-link model: dap-2660_firmware
vendor: d-link model: dap-2690
vendor: d-link model: d-link dap-2330
vendor: d-link model: dap-3662
vendor: d-link model: dap-2330
vendor: d-link model: dap-2553
vendor: d-link model: dap-2695
vendor: d-link model: dap-2695_firmware
vendor: d-link model: dap-2660
vendor: d-link model: dap-2330_firmware
vendor: d-link model: dap-3662_firmware
vendor: d-link model: dap-2553_firmware
vendor: dlink model: dap-2690_firmware
vendor: dlink model: dap-2660_firmware
vendor: dlink model: dap-2690
vendor: dlink model: d-link dap-2330
vendor: dlink model: dap-3662
vendor: dlink model: dap-2330
vendor: dlink model: dap-2553
vendor: dlink model: dap-2695
vendor: dlink model: dap-2695_firmware
vendor: dlink model: dap-2660
vendor: dlink model: dap-2330_firmware
vendor: dlink model: dap-3662_firmware
vendor: dlink model: dap-2553_firmware
db: NVD ids: CVE-2024-28436

Trust: 3.0

Fetched: May 3, 2024, 10:28 a.m., Published: April 17, 2024, 3 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-31497

Trust: 4.5

Fetched: May 3, 2024, 10:25 a.m., Published: April 24, 2024, 10:55 p.m.
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense
vendor: cisco model: firepower threat defense software
vendor: cisco model: adaptive security appliance
db: NVD ids: CVE-2024-20353317451, CVE-2024-20359, CVE-2024-20353

Trust: 3.25

Fetched: May 3, 2024, 10:24 a.m., Published: May 3, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 4.75

Fetched: May 3, 2024, 10:24 a.m., Published: -
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: mikrotik model: router
vendor: mikrotik model: routeros
vendor: mikrotik model: mikrotik router
vendor: mikrotik model: winbox
vendor: snort model: snort
db: NVD ids: CVE-2023-30799

Trust: 3.0

Fetched: May 3, 2024, 10:24 a.m., Published: April 9, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: squid model: squid
Related entries in the VARIoT vulnerabilities database: VAR-202404-0070, VAR-202404-0069

Trust: 4.5

Fetched: May 3, 2024, 10:22 a.m., Published: April 15, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: series
vendor: google model: android
vendor: google model: home
vendor: d-link model: dns-325
vendor: d-link model: dns-320l
vendor: d-link model: dns-340l
vendor: d-link model: dns-327l
db: NVD ids: CVE-2023-6320, CVE-2024-3273, CVE-2023-6318, CVE-2023-6317, CVE-2024-3272, CVE-2023-6319
Related entries in the VARIoT vulnerabilities database: VAR-202404-0069, VAR-202404-0070

Trust: 4.75

Fetched: May 3, 2024, 10:21 a.m., Published: April 8, 2024, 6:56 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: d-link model: dns-325
vendor: d-link model: dns-320l
vendor: d-link model: dns-340l
vendor: d-link model: dns-327l
db: NVD ids: CVE-2024-3272, CVE-2024-3273