VARIoT news about IoT security

Trust: 3.75

Fetched: June 16, 2024, 9:27 a.m., Published: June 16, 2024, midnight
Vulnerabilities: os command injection, authentication bypass, default credentials...
Affected productsExternal IDs
db: NVD ids: CVE-2024-3497, CVE-2024-27154, CVE-2024-27164, CVE-2024-27156, CVE-2024-27146, CVE-2024-27153, CVE-2024-27171, CVE-2024-27144, CVE-2024-27142, CVE-2024-27169, CVE-2024-27143, CVE-2024-27147, CVE-2024-27157, CVE-2024-7145, CVE-2024-27180, CVE-2024-3498, CVE-2024-27167, CVE-2024-27173, CVE-2024-27163, CVE-2024-27178, CVE-2024-27161, CVE-2024-27168, CVE-2024-27165, CVE-2024-27150, CVE-2024-27175, CVE-2024-27176, CVE-2024-27152, CVE-2024-27166, CVE-2024-3496, CVE-2024-27160, CVE-2024-27158, CVE-2024-27141, CVE-2024-27149, CVE-2024-27159, CVE-2024-27162, CVE-2024-27151, CVE-2024-27174, CVE-2024-27170, CVE-2024-27148, CVE-2024-27155, CVE-2024-27179, CVE-2024-27172

Trust: 5.25

Fetched: June 16, 2024, 9:26 a.m., Published: April 25, 2024, 1:15 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone

Trust: 4.5

Fetched: June 16, 2024, 9:25 a.m., Published: April 25, 2024, 7:42 a.m.
Vulnerabilities: denial of service, code execution
Affected productsExternal IDs
vendor: cisco model: firepower threat defense
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower
vendor: cisco model: device manager
vendor: cisco model: asa series
vendor: cisco model: series
vendor: cisco model: firepower management center
vendor: cisco model: asa software
db: NVD ids: CVE-2024-20358, CVE-2024-20359, CVE-2024-20353

Trust: 3.5

Fetched: June 16, 2024, 9:24 a.m., Published: Jan. 28, 2017, 12:45 p.m.
Vulnerabilities: os command injection, code execution, file inclusion...
Affected productsExternal IDs

Trust: 5.5

Fetched: June 16, 2024, 9:24 a.m., Published: May 7, 2024, 10:09 a.m.
Vulnerabilities: memory corruption, code execution, authentication bypass...
Affected productsExternal IDs
vendor: samsung model: mobile
vendor: samsung model: samsung mobile
vendor: samsung model: mobile devices
vendor: google model: android
db: NVD ids: CVE-2024-20865, CVE-2024-20861, CVE-2024-20866, CVE-2024-20862, CVE-2024-20856, CVE-2024-20864, CVE-2024-20855

Trust: 5.75

Fetched: June 16, 2024, 9:23 a.m., Published: April 8, 2024, 2:21 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: catalyst 6000
vendor: cisco model: cisco catalyst 6000 series
vendor: cisco model: catalyst 6000 series
vendor: cisco model: ios software
vendor: cisco model: catalyst
vendor: cisco model: series switches
vendor: cisco model: cisco ios
vendor: cisco model: catalyst 6500 series
vendor: cisco model: routers
vendor: cisco model: supervisor engine
vendor: cisco model: series
vendor: cisco model: catalyst 6500
vendor: cisco systems model: catalyst 6000
vendor: cisco systems model: cisco catalyst 6000 series
vendor: cisco systems model: catalyst 6000 series
vendor: cisco systems model: ios software
vendor: cisco systems model: catalyst
vendor: cisco systems model: series switches
vendor: cisco systems model: cisco ios
vendor: cisco systems model: catalyst 6500 series
vendor: cisco systems model: routers
vendor: cisco systems model: supervisor engine
vendor: cisco systems model: series
vendor: cisco systems model: catalyst 6500
db: NVD ids: CVE-2024-20276
Related entries in the VARIoT vulnerabilities database: VAR-202212-1132

Trust: 5.25

Fetched: June 14, 2024, 9:47 a.m., Published: June 11, 2024, 1:24 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: fortigate model: fortios
db: NVD ids: CVE-2022-42475
Related entries in the VARIoT vulnerabilities database: VAR-202212-1132

Trust: 4.75

Fetched: June 14, 2024, 9:46 a.m., Published: June 11, 2024, 10:56 p.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: fortigate model: fortios
db: NVD ids: CVE-2022-42475

Trust: 3.75

Fetched: June 14, 2024, 9:46 a.m., Published: June 11, 2024, 4:27 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: roku model: roku ultra
vendor: roku model: ultra
vendor: roku model: roku
vendor: amazon model: fire tv
vendor: apple model: iphone
vendor: apple model: watch
vendor: samsung model: galaxy
vendor: samsung model: samsung galaxy
vendor: google model: pixel
vendor: google model: android
vendor: tesla model: model
vendor: tesla model: model 3
db: NVD ids: CVE-2024-4610, CVE-2023-4211
Related entries in the VARIoT vulnerabilities database: VAR-202203-1978

Trust: 4.25

Fetched: June 14, 2024, 9:29 a.m., Published: June 9, 2024, 12:26 p.m.
Vulnerabilities: security feature bypass, memory corruption, command injection...
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: android
vendor: google model: chrome
vendor: cisco model: routers
vendor: cisco model: cisco webex
vendor: cisco model: webex meetings
vendor: cisco model: series
vendor: cisco model: meeting
vendor: cisco model: webex
vendor: cisco model: cisco webex meetings
vendor: zyxel model: nas542
vendor: zyxel model: nas326
db: NVD ids: CVE-2024-24919, CVE-2024-32850, CVE-2024-29974, CVE-2024-4577, CVE-2017-3506, CVE-2024-27822, CVE-2024-29972, CVE-2023-32233, CVE-2024-29973, CVE-2024-4358, CVE-2022-26243
Related entries in the VARIoT vulnerabilities database: VAR-202203-1978

Trust: 5.25

Fetched: June 14, 2024, 9:27 a.m., Published: June 3, 2024, midnight
Vulnerabilities: security feature bypass, memory corruption, command injection...
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: android
vendor: google model: chrome
vendor: cisco model: webex meetings
vendor: cisco model: series
vendor: cisco model: meeting
vendor: cisco model: webex
vendor: zyxel model: nas542
vendor: zyxel model: nas326
db: NVD ids: CVE-2024-24919, CVE-2024-32850, CVE-2024-29974, CVE-2024-4577, CVE-2017-3506, CVE-2024-27822, CVE-2024-29972, CVE-2023-32233, CVE-2024-29973, CVE-2024-4358, CVE-2022-26243

Trust: 5.0

Fetched: June 14, 2024, 9:26 a.m., Published: May 21, 2024, 12:23 p.m.
Vulnerabilities: sql injection
Affected productsExternal IDs
db: NVD ids: CVE-2023-3942
Related entries in the VARIoT vulnerabilities database: VAR-202406-0059

Trust: 3.5

Fetched: June 14, 2024, 9:25 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: simatic s7-200 smart cpu st40
vendor: siemens model: simatic
vendor: siemens model: simatic s7-200 smart cpu
vendor: siemens model: simatic s7-200 smart cpu sr30
vendor: siemens model: simatic s7-200 smart
vendor: siemens model: simatic s7-200 smart cpu st30
vendor: siemens model: simatic s7-200 smart cpu st20
vendor: siemens model: simatic s7-200
vendor: siemens model: simatic s7-200 smart cpu sr40
vendor: siemens model: s7-200 smart
vendor: siemens model: simatic s7-200 smart cpu cr60
vendor: siemens model: simatic s7-200 smart cpu sr20
vendor: siemens model: simatic s7-200 smart cpu sr60
vendor: siemens model: simatic s7-200 smart cpu cr40
vendor: siemens model: simatic s7-200 smart cpu st60
db: NVD ids: CVE-2024-35292

Trust: 4.75

Fetched: June 14, 2024, 9:22 a.m., Published: June 12, 2024, 7:06 p.m.
Vulnerabilities: information disclosure, privilege escalation, code execution
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
db: NVD ids: CVE-2024-4610, CVE-2024-32896, CVE-2024-29745, CVE-2024-29748
Related entries in the VARIoT vulnerabilities database: VAR-202406-2711

Trust: 4.25

Fetched: June 14, 2024, 9:21 a.m., Published: June 14, 2024, midnight
Vulnerabilities: information disclosure, code execution, denial of service
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
db: NVD ids: CVE-2023-50803, CVE-2023-43543, CVE-2023-43555, CVE-2024-29781, CVE-2024-32908, CVE-2024-29784, CVE-2024-32915, CVE-2024-32914, CVE-2024-32907, CVE-2024-32912, CVE-2024-29785, CVE-2024-32901, CVE-2024-32922, CVE-2024-32925, CVE-2024-32918, CVE-2024-32909, CVE-2024-32911, CVE-2024-29786, CVE-2024-32921, CVE-2024-29787, CVE-2023-43537, CVE-2024-32924, CVE-2024-32894, CVE-2024-29778, CVE-2024-32930, CVE-2024-32895, CVE-2024-32898, CVE-2024-32897, CVE-2024-32926, CVE-2024-32913, CVE-2024-32917, CVE-2024-32892, CVE-2024-32920, CVE-2024-32903, CVE-2024-32919, CVE-2023-43545, CVE-2024-32900, CVE-2024-32899, CVE-2024-32910, CVE-2024-32893, CVE-2024-32906, CVE-2024-29780, CVE-2024-32916, CVE-2024-32891, CVE-2024-32896, CVE-2024-32904, CVE-2023-43544, CVE-2024-32902, CVE-2024-32923, CVE-2024-32905

Trust: 6.0

Fetched: June 14, 2024, 9:20 a.m., Published: June 13, 2024, 3:43 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: pixel
vendor: google model: android
db: NVD ids: CVE-2024-32896
Related entries in the VARIoT vulnerabilities database: VAR-202406-1703, VAR-202406-1535, VAR-202406-2694, VAR-202406-2297, VAR-202406-2276

Trust: 4.25

Fetched: June 14, 2024, 9:17 a.m., Published: June 14, 2024, midnight
Vulnerabilities: information disclosure, code execution, denial of service
Affected productsExternal IDs
vendor: motorola model: android
vendor: motorola model: motorola
vendor: huawei model: huawei
vendor: samsung model: mobile
vendor: samsung model: notes
vendor: google model: pixel
vendor: google model: android
vendor: google model: wifi
db: NVD ids: CVE-2024-20069, CVE-2024-31326, CVE-2023-43556, CVE-2024-20065, CVE-2024-31315, CVE-2024-1065, CVE-2024-23711, CVE-2024-23697, CVE-2024-23698, CVE-2024-31324, CVE-2023-21114, CVE-2023-21113, CVE-2024-31312, CVE-2024-31325, CVE-2024-31314, CVE-2024-31313, CVE-2024-31311, CVE-2024-20066, CVE-2024-23363, CVE-2023-43542, CVE-2024-31310, CVE-2024-20068, CVE-2023-43538, CVE-2024-31327, CVE-2024-0671, CVE-2024-23695, CVE-2024-31318, CVE-2023-43551, CVE-2024-31316, CVE-2024-31322, CVE-2024-23696, CVE-2024-20067, CVE-2023-21266, CVE-2024-26926, CVE-2024-31323, CVE-2024-31319, CVE-2024-31317

Trust: 4.0

Fetched: June 14, 2024, 9:10 a.m., Published: June 14, 2023, midnight
Vulnerabilities: memory corruption, code execution, information leakage
Affected productsExternal IDs
db: NVD ids: CVE-2021-27408, CVE-2021-27410

Trust: 3.75

Fetched: June 12, 2024, 9:42 a.m., Published: May 27, 2024, 6:27 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2024-5274

Trust: 3.75

Fetched: June 12, 2024, 9:40 a.m., Published: May 28, 2024, 11:13 a.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: mikrotik model: routers
vendor: mikrotik model: mikrotik routers