VARIoT news about IoT security

Trust: 4.75

Fetched: Nov. 1, 2024, 9:21 a.m., Published: Oct. 31, 2024, 10:24 a.m.
Vulnerabilities: privilege escalation, object injection, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-47374, CVE-2024-50550, CVE-2024-28000, CVE-2024-43240, CVE-2024-43242, CVE-2024-44000

Trust: 4.75

Fetched: Nov. 1, 2024, 9:19 a.m., Published: Oct. 8, 2024, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2024-43485

Trust: 5.0

Fetched: Nov. 1, 2024, 9:18 a.m., Published: Aug. 1, 2024, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: sonos model: sonos
db: NVD ids: CVE-2023-50810
Related entries in the VARIoT vulnerabilities database: VAR-201803-2171

Trust: 4.5

Fetched: Nov. 1, 2024, 9:17 a.m., Published: Aug. 15, 2024, 3:21 a.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: mikrotik model: routeros
vendor: mikrotik model: mikrotik
vendor: mikrotik model: mikrotik router
vendor: mikrotik model: router
vendor: trend model: security
db: NVD ids: CVE-2018-7445

Trust: 5.25

Fetched: Nov. 1, 2024, 9:16 a.m., Published: April 6, 2002, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2024-45259

Trust: 5.0

Fetched: Nov. 1, 2024, 9:15 a.m., Published: Nov. 13, 2024, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2024-0029

Trust: 3.0

Fetched: Nov. 1, 2024, 9:14 a.m., Published: Oct. 21, 2024, 8:15 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-50022

Trust: 4.0

Fetched: Nov. 1, 2024, 9:13 a.m., Published: Sept. 25, 2024, midnight
Vulnerabilities: memory access vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2024-31145

Trust: 4.75

Fetched: Nov. 1, 2024, 9:13 a.m., Published: Nov. 3, 2024, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2024-48989

Trust: 4.25

Fetched: Nov. 1, 2024, 9:12 a.m., Published: Aug. 23, 2025, midnight
Vulnerabilities: buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2023-45576

Trust: 5.5

Fetched: Nov. 1, 2024, 9:11 a.m., Published: Nov. 1, 6012, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
vendor: cisco model: soho
vendor: cisco model: router

Trust: 3.75

Fetched: Oct. 30, 2024, 9:38 a.m., Published: Nov. 4, 2024, midnight
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 4.5

Fetched: Oct. 30, 2024, 9:35 a.m., Published: Oct. 30, 2023, midnight
Vulnerabilities: code execution, os command injection, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-47902, CVE-2024-47904, CVE-2024-47903, CVE-2024-47901

Trust: 4.5

Fetched: Oct. 30, 2024, 9:34 a.m., Published: Oct. 28, 2024, 9:59 a.m.
Vulnerabilities: improper access control, path traversal
Affected productsExternal IDs
db: NVD ids: CVE-2024-6981, CVE-2024-5947, CVE-2024-10313, CVE-2024-9692

Trust: 3.75

Fetched: Oct. 30, 2024, 9:32 a.m., Published: Oct. 28, 2024, 8:26 p.m.
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 4.75

Fetched: Oct. 30, 2024, 9:31 a.m., Published: Oct. 30, 2023, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: trend micro model: security
vendor: trend model: security
db: NVD ids: CVE-2024-10456

Trust: 3.0

Fetched: Oct. 30, 2024, 9:31 a.m., Published: Sept. 30, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-41999
Related entries in the VARIoT vulnerabilities database: VAR-202408-2337

Trust: 6.0

Fetched: Oct. 30, 2024, 9:30 a.m., Published: -
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: d-link model: dns-323
vendor: d-link model: dnr-322l
vendor: d-link model: dns-327l
vendor: d-link model: dns-325
vendor: d-link model: dns-320l
vendor: d-link model: dns-320
vendor: d-link model: dns-340l
vendor: d-link model: dnr-326
vendor: d-link model: dns-345
vendor: d-link model: dns-320lw
db: NVD ids: CVE-2024-8213

Trust: 4.25

Fetched: Oct. 30, 2024, 9:29 a.m., Published: July 14, 2001, midnight
Vulnerabilities: information disclosure, buffer overflow, bounds access issue...
Affected productsExternal IDs
vendor: trend micro model: security
vendor: trend model: security
vendor: apple model: macos
db: NVD ids: CVE-2024-44218, CVE-2024-44215, CVE-2024-44278, CVE-2024-44137, CVE-2024-44156, CVE-2024-44297, CVE-2024-44270, CVE-2024-44260, CVE-2024-44213, CVE-2024-44247, CVE-2024-44253, CVE-2024-44256, CVE-2024-44240, CVE-2024-44279, CVE-2024-44197, CVE-2024-44275, CVE-2024-44216, CVE-2024-44175, CVE-2024-44159, CVE-2024-44236, CVE-2024-44295, CVE-2024-44301, CVE-2024-44267, CVE-2024-44283, CVE-2024-44122, CVE-2024-40855, CVE-2024-44302, CVE-2024-44144, CVE-2024-44222, CVE-2024-44294, CVE-2024-44284, CVE-2024-44281, CVE-2024-44273, CVE-2024-44239, CVE-2024-44287, CVE-2024-44257, CVE-2024-44269, CVE-2024-44255, CVE-2024-44280, CVE-2024-44289, CVE-2024-44282, CVE-2024-44264, CVE-2024-44254, CVE-2024-44265, CVE-2024-44237, CVE-2024-44196

Trust: 5.25

Fetched: Oct. 30, 2024, 9:28 a.m., Published: Oct. 22, 2024, 1 p.m.
Vulnerabilities: kernel panic, system crash, resource exhaustion
Affected productsExternal IDs
vendor: google model: pixel
vendor: apple model: safari
vendor: apple model: macos
db: NVD ids: CVE-2023-40441