VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202406-1703, VAR-202406-1535, VAR-202406-2694, VAR-202406-2297, VAR-202406-2276

Trust: 4.25

Fetched: June 14, 2024, 9:17 a.m., Published: June 14, 2024, midnight
Vulnerabilities: information disclosure, code execution, denial of service
Affected productsExternal IDs
vendor: motorola model: android
vendor: motorola model: motorola
vendor: huawei model: huawei
vendor: samsung model: mobile
vendor: samsung model: notes
vendor: google model: pixel
vendor: google model: android
vendor: google model: wifi
db: NVD ids: CVE-2024-20069, CVE-2024-31326, CVE-2023-43556, CVE-2024-20065, CVE-2024-31315, CVE-2024-1065, CVE-2024-23711, CVE-2024-23697, CVE-2024-23698, CVE-2024-31324, CVE-2023-21114, CVE-2023-21113, CVE-2024-31312, CVE-2024-31325, CVE-2024-31314, CVE-2024-31313, CVE-2024-31311, CVE-2024-20066, CVE-2024-23363, CVE-2023-43542, CVE-2024-31310, CVE-2024-20068, CVE-2023-43538, CVE-2024-31327, CVE-2024-0671, CVE-2024-23695, CVE-2024-31318, CVE-2023-43551, CVE-2024-31316, CVE-2024-31322, CVE-2024-23696, CVE-2024-20067, CVE-2023-21266, CVE-2024-26926, CVE-2024-31323, CVE-2024-31319, CVE-2024-31317

Trust: 4.0

Fetched: June 14, 2024, 9:10 a.m., Published: June 14, 2023, midnight
Vulnerabilities: memory corruption, code execution, information leakage
Affected productsExternal IDs
db: NVD ids: CVE-2021-27408, CVE-2021-27410

Trust: 3.75

Fetched: June 12, 2024, 9:42 a.m., Published: May 27, 2024, 6:27 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
db: NVD ids: CVE-2024-5274

Trust: 3.75

Fetched: June 12, 2024, 9:40 a.m., Published: May 28, 2024, 11:13 a.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: mikrotik model: routers
vendor: mikrotik model: mikrotik routers

Trust: 3.75

Fetched: June 12, 2024, 9:39 a.m., Published: May 30, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: tesla model: model

Trust: 3.75

Fetched: June 12, 2024, 9:32 a.m., Published: -
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 4.0

Fetched: June 12, 2024, 9:31 a.m., Published: May 13, 2024, 9:26 a.m.
Vulnerabilities: session hijacking
Affected productsExternal IDs

Trust: 3.0

Fetched: June 12, 2024, 9:30 a.m., Published: May 28, 2024, 10:26 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 4.0

Fetched: June 12, 2024, 9:30 a.m., Published: June 2, 2024, midnight
Vulnerabilities: pointer dereference vulnerability, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-29948, CVE-2024-29947, CVE-2024-29949
Related entries in the VARIoT vulnerabilities database: VAR-202404-0070

Trust: 5.5

Fetched: June 12, 2024, 9:29 a.m., Published: April 4, 2024, 3:37 p.m.
Vulnerabilities: denial of service, command execution, command injection...
Affected productsExternal IDs
vendor: d-link model: dns-327l
vendor: d-link model: dns-320l
vendor: d-link model: dns-340l
vendor: d-link model: dns-325
db: NVD ids: CVE-2024-3273

Trust: 3.0

Fetched: June 12, 2024, 9:28 a.m., Published: March 15, 2024, 4:36 p.m.
Vulnerabilities: -
Affected productsExternal IDs

Trust: 3.75

Fetched: June 12, 2024, 9:23 a.m., Published: April 9, 2024, 6:28 p.m.
Vulnerabilities: authentication bypass, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2023-6318, CVE-2023-6319, CVE-2023-6317, CVE-2023-6320

Trust: 3.25

Fetched: June 12, 2024, 9:18 a.m., Published: April 24, 2024, 1:14 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 3.75

Fetched: June 11, 2024, 9:31 a.m., Published: June 6, 2024, 7:29 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: iphone
db: NVD ids: CVE-2023-32434, CVE-2023-32435
Related entries in the VARIoT vulnerabilities database: VAR-201205-0305

Trust: 5.5

Fetched: June 11, 2024, 9:30 a.m., Published: June 7, 2024, 9:57 p.m.
Vulnerabilities: injection attack, code execution, command execution
Affected productsExternal IDs
vendor: orange model: web server
db: NVD ids: CVE-2024-4577, CVE-2012-1823

Trust: 4.0

Fetched: June 11, 2024, 9:28 a.m., Published: June 11, 2024, 8:09 a.m.
Vulnerabilities: use after free
Affected productsExternal IDs
db: NVD ids: CVE-2024-4610

Trust: 5.5

Fetched: June 11, 2024, 9:26 a.m., Published: Jan. 11, 2050, midnight
Vulnerabilities: authentication bypass, command execution, buffer overrun...
Affected productsExternal IDs
vendor: google model: nexus
db: NVD ids: CVE-2023-3942, CVE-2023-3941, CVE-2023-3939, CVE-2023-3940, CVE-2023-3943, CVE-2023-3938

Trust: 5.5

Fetched: June 11, 2024, 9:24 a.m., Published: June 7, 2024, midnight
Vulnerabilities: privilege management vulnerability, code execution, command injection
Affected productsExternal IDs
vendor: zyxel model: nas326
vendor: zyxel model: nas542
db: NVD ids: CVE-2024-29973, CVE-2024-29975, CVE-2024-29974, CVE-2024-29976, CVE-2024-29972

Trust: 3.75

Fetched: June 11, 2024, 9:23 a.m., Published: June 7, 2024, 11:34 a.m.
Vulnerabilities: memory corruption
Affected productsExternal IDs
vendor: apple model: iphone

Trust: 4.75

Fetched: June 11, 2024, 9:22 a.m., Published: May 27, 2024, 10:31 a.m.
Vulnerabilities: sql injection, command execution, privilege escalation
Affected productsExternal IDs
vendor: cisco model: firepower
vendor: cisco model: firepower management center
vendor: cisco model: firepower threat defense
vendor: cisco model: adaptive security appliance
vendor: cisco model: cisco firepower management center
vendor: cisco model: cisco adaptive security appliance
db: NVD ids: CVE-2024-20360