VARIoT news about IoT security

Trust: 4.0

Fetched: March 15, 2024, 9:12 a.m., Published: March 13, 2024, 3:56 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: cisco model: ios xr
vendor: cisco model: cisco ios
vendor: cisco model: ios xr software
vendor: cisco model: cisco ios xr

Trust: 3.0

Fetched: March 15, 2024, 9:12 a.m., Published: March 13, 2024, 3:56 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: ios xr
vendor: cisco model: ios software
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios
vendor: cisco model: router
vendor: cisco model: nx-os software
vendor: cisco model: nx-os
vendor: cisco model: ios xr software
vendor: cisco model: cisco ios xr

Trust: 5.0

Fetched: March 15, 2024, 9:11 a.m., Published: Feb. 21, 2024, 3:57 p.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: cisco model: adaptive security appliance software
vendor: cisco model: firepower management center
vendor: cisco model: cisco adaptive security appliance software
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense
vendor: cisco model: firepower threat defense software
vendor: cisco model: cisco firepower management center
vendor: cisco model: device manager
vendor: cisco model: asa software
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: adaptive security appliance

Trust: 4.0

Fetched: March 15, 2024, 9:11 a.m., Published: March 15, 4070, midnight
Vulnerabilities: sql injection, authentication vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2024-21900, CVE-2024-21901, CVE-2024-21899

Trust: 3.0

Fetched: March 15, 2024, 9:10 a.m., Published: March 15, 2023, midnight
Vulnerabilities: sql injection
Affected productsExternal IDs

Trust: 4.0

Fetched: March 13, 2024, 9:59 a.m., Published: -
Vulnerabilities: denial of service, information disclosure, request forgery...
Affected productsExternal IDs

Trust: 4.25

Fetched: March 13, 2024, 9:57 a.m., Published: March 11, 2024, 2:32 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: qnap model: qnap qts
db: NVD ids: CVE-2024-21899, CVE-2024-21901, CVE-2024-21900

Trust: 3.25

Fetched: March 13, 2024, 9:52 a.m., Published: Oct. 8, 2023, 6:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: ecobee model: ecobee smart thermostat
vendor: ecobee model: smart thermostat
vendor: chamberlain model: myq garage
vendor: ring model: video doorbells
vendor: nest model: learning thermostat

Trust: 3.0

Fetched: March 13, 2024, 9:50 a.m., Published: Sept. 14, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: symantec model: endpoint protection
vendor: symantec model: symantec endpoint protection

Trust: 4.5

Fetched: March 13, 2024, 9:50 a.m., Published: Feb. 14, 2024, 6:24 a.m.
Vulnerabilities: security feature bypass, code injection, feature bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2024-21412, CVE-2024-21351

Trust: 3.0

Fetched: March 13, 2024, 9:47 a.m., Published: Feb. 28, 2024, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 3.25

Fetched: March 13, 2024, 9:46 a.m., Published: March 13, 2024, 5:21 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-24785

Trust: 4.25

Fetched: March 13, 2024, 9:46 a.m., Published: March 11, 2024, 2:30 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: qnap model: qnap qts
db: NVD ids: CVE-2024-21899, CVE-2024-21901, CVE-2024-21900
Related entries in the VARIoT vulnerabilities database: VAR-201905-0112

Trust: 3.0

Fetched: March 13, 2024, 9:45 a.m., Published: March 1, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2019-6572
Related entries in the VARIoT vulnerabilities database: VAR-202002-0214

Trust: 4.0

Fetched: March 13, 2024, 9:44 a.m., Published: March 13, 2024, midnight
Vulnerabilities: -

Trust: 4.0

Fetched: March 13, 2024, 9:43 a.m., Published: March 12, 2024, 4:11 p.m.
Vulnerabilities: use after free
Affected productsExternal IDs
db: NVD ids: CVE-2023-52491

Trust: 3.25

Fetched: March 13, 2024, 9:43 a.m., Published: March 6, 2024, 4 p.m.
Vulnerabilities: path traversal
Affected productsExternal IDs

Trust: 3.0

Fetched: March 13, 2024, 9:42 a.m., Published: March 13, 2022, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-21887, CVE-2024-21893, CVE-2023-46805

Trust: 4.0

Fetched: March 13, 2024, 9:41 a.m., Published: March 6, 2024, 5:15 p.m.
Vulnerabilities: code injection, uncontrolled search path
Affected productsExternal IDs

Trust: 4.75

Fetched: March 13, 2024, 9:40 a.m., Published: March 12, 2024, 4:31 p.m.
Vulnerabilities: path traversal, buffer overflow
Affected productsExternal IDs
vendor: fortigate model: fortios
db: NVD ids: CVE-2023-27997, CVE-2022-41328, CVE-2024-21762