VARIoT news about IoT security

Trust: 4.5

Fetched: Feb. 4, 2024, 9:22 a.m., Published: Jan. 19, 2024, 3:15 a.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: pulsesecure model: connect secure
vendor: pulsesecure model: policy secure
db: NVD ids: CVE-2024-21887, CVE-2023-46805

Trust: 3.75

Fetched: Feb. 4, 2024, 9:16 a.m., Published: Feb. 1, 2024, 11:45 p.m.
Vulnerabilities: request forgery
Affected productsExternal IDs
db: NVD ids: CVE-2024-21893, CVE-2024-21888

Trust: 3.0

Fetched: Feb. 4, 2024, 9:10 a.m., Published: Aug. 4, 2023, 2:12 p.m.
Vulnerabilities: -
Affected productsExternal IDs

Trust: 3.75

Fetched: Feb. 4, 2024, 9:09 a.m., Published: Aug. 4, 2023, 12:04 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.25

Fetched: Feb. 2, 2024, 10:54 a.m., Published: Feb. 2, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: qnap model: qnap qts

Trust: 4.5

Fetched: Feb. 2, 2024, 10:53 a.m., Published: Jan. 24, 2024, midnight
Vulnerabilities: resource exhaustion, session hijacking
Affected productsExternal IDs
vendor: delegate model: delegate

Trust: 4.75

Fetched: Feb. 2, 2024, 10:52 a.m., Published: -
Vulnerabilities: default password
Affected productsExternal IDs
vendor: trend model: security
vendor: enphase model: envoy
vendor: trend micro model: security

Trust: 3.0

Fetched: Feb. 2, 2024, 10:48 a.m., Published: Jan. 20, 2024, 10 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macbook
vendor: apple model: apple ipad
vendor: apple model: macbook air
vendor: apple model: ipad air
vendor: apple model: iphone
vendor: apple model: ipad

Trust: 3.0

Fetched: Feb. 2, 2024, 10:48 a.m., Published: Feb. 1, 2024, 1:19 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-0519

Trust: 5.75

Fetched: Feb. 2, 2024, 10:48 a.m., Published: Jan. 17, 2024, 5:44 p.m.
Vulnerabilities: memory access issue, code execution
Affected productsExternal IDs
vendor: google model: chrome
db: NVD ids: CVE-2024-0519, CVE-2023-4762, CVE-2024-0517, CVE-2024-0518

Trust: 3.25

Fetched: Feb. 2, 2024, 10:47 a.m., Published: Feb. 2, 2024, midnight
Vulnerabilities: -

Trust: 3.0

Fetched: Feb. 2, 2024, 10:46 a.m., Published: Jan. 12, 2024, 8:41 a.m.
Vulnerabilities: -
Affected productsExternal IDs

Trust: 4.75

Fetched: Feb. 2, 2024, 10:44 a.m., Published: -
Vulnerabilities: default password
Affected productsExternal IDs
vendor: trend model: security
vendor: enphase model: envoy
vendor: trend micro model: security

Trust: 4.5

Fetched: Feb. 2, 2024, 10:41 a.m., Published: Feb. 2, 2042, midnight
Vulnerabilities: default password
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo alto networks model: networks
Related entries in the VARIoT vulnerabilities database: VAR-202108-0266, VAR-202108-0265, VAR-202112-0296, VAR-202106-0491

Trust: 3.0

Fetched: Feb. 2, 2024, 10:39 a.m., Published: Jan. 8, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2021-22927, CVE-2021-22920, CVE-2021-22956, CVE-2020-8300

Trust: 6.0

Fetched: Feb. 2, 2024, 10:36 a.m., Published: Feb. 19, 2024, midnight
Vulnerabilities: sql injection, code execution
Affected productsExternal IDs
vendor: mobileiron model: sentry
db: NVD ids: CVE-2023-39336, CVE-2023-38035

Trust: 5.0

Fetched: Feb. 2, 2024, 10:35 a.m., Published: -
Vulnerabilities: default password
Affected productsExternal IDs
vendor: enphase model: envoy

Trust: 4.5

Fetched: Feb. 2, 2024, 10:35 a.m., Published: Jan. 25, 2024, 7:51 p.m.
Vulnerabilities: buffer overflow, privilege escalation, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-6816, CVE-2024-21886, CVE-2024-0229, CVE-2024-0409, CVE-2024-0408, CVE-2024-21885

Trust: 3.25

Fetched: Feb. 2, 2024, 10:32 a.m., Published: Jan. 2, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: mobile devices
vendor: samsung model: mobile
vendor: samsung model: smartthings hub
vendor: samsung smartthings model: mobile devices
vendor: samsung smartthings model: mobile
vendor: samsung smartthings model: smartthings hub
vendor: hikvision model: ip cameras
vendor: smartthings model: smartthings hub
vendor: xiaomi model: browser

Trust: 3.0

Fetched: Feb. 2, 2024, 10:31 a.m., Published: Jan. 22, 2024, 6:43 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: iphone