VARIoT news about IoT security

Trust: 3.5

Fetched: Feb. 6, 2024, 9:33 a.m., Published: Feb. 5, 2024, midnight
Vulnerabilities: code execution, denial of service, information disclosure
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel

Trust: 3.75

Fetched: Feb. 6, 2024, 9:33 a.m., Published: Jan. 30, 2024, 7:16 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: cisco model: unity connection
vendor: cisco model: unified communications
vendor: cisco model: unity

Trust: 3.5

Fetched: Feb. 6, 2024, 9:32 a.m., Published: Nov. 24, 2020, midnight
Vulnerabilities: denial of service, default password

Trust: 5.25

Fetched: Feb. 6, 2024, 9:28 a.m., Published: Feb. 1, 2024, 6:30 p.m.
Vulnerabilities: privilege escalation, request forgery, authentication bypass...
Affected productsExternal IDs
vendor: pulse secure model: policy secure
vendor: pulse secure model: connect secure
db: NVD ids: CVE-2023-46805, CVE-2024-21893, CVE-2024-21887, CVE-2024-21888, CVE-2023-46825

Trust: 4.5

Fetched: Feb. 6, 2024, 9:10 a.m., Published: Jan. 6, 2024, midnight
Vulnerabilities: code execution, code injection
Affected productsExternal IDs
vendor: google model: chrome

Trust: 4.75

Fetched: Feb. 4, 2024, 10:22 a.m., Published: Jan. 17, 2024, 11:05 a.m.
Vulnerabilities: heap corruption
Affected productsExternal IDs
vendor: google model: chrome
vendor: google model: google chrome
db: NVD ids: CVE-2024-0519, CVE-2024-0517, CVE-2024-0518

Trust: 4.75

Fetched: Feb. 4, 2024, 10:21 a.m., Published: Jan. 25, 2024, 11:57 a.m.
Vulnerabilities: cross-site scripting, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-27905, CVE-2024-23897, CVE-2023-27898

Trust: 5.0

Fetched: Feb. 4, 2024, 10:21 a.m., Published: Jan. 11, 2024, 6:08 a.m.
Vulnerabilities: improper validation
Affected productsExternal IDs
vendor: cisco model: unity
vendor: cisco model: cisco unity
vendor: cisco model: unified communications
vendor: cisco model: cisco unity connection
vendor: cisco model: unity connection
db: NVD ids: CVE-2024-20272

Trust: 3.75

Fetched: Feb. 4, 2024, 10:21 a.m., Published: Jan. 25, 2024, 11:34 p.m.
Vulnerabilities: code execution, arbitrary command execution, command execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-23618

Trust: 3.25

Fetched: Feb. 4, 2024, 10:19 a.m., Published: Jan. 14, 2024, 4:32 p.m.
Vulnerabilities: denial of service, default credentials, device impersonation
Affected productsExternal IDs

Trust: 3.5

Fetched: Feb. 4, 2024, 10:17 a.m., Published: Jan. 29, 2024, 2:05 a.m.
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 3.25

Fetched: Feb. 4, 2024, 10:15 a.m., Published: Jan. 16, 2024, 10:43 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-36847, CVE-2023-36845, CVE-2024-21591, CVE-2023-36846, CVE-2023-36844

Trust: 3.75

Fetched: Feb. 4, 2024, 10:14 a.m., Published: Jan. 29, 2024, 10:38 a.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: wireshark model: wireshark

Trust: 3.0

Fetched: Feb. 4, 2024, 10:14 a.m., Published: Jan. 11, 2024, 2:43 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-47257, CVE-2023-47256

Trust: 3.25

Fetched: Feb. 4, 2024, 10:13 a.m., Published: Jan. 30, 2024, 4 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: iphone

Trust: 4.75

Fetched: Feb. 4, 2024, 10:05 a.m., Published: Aug. 28, 2016, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: watchos
vendor: apple model: tvos
vendor: apple model: webkit
vendor: apple model: iphone
vendor: apple model: safari
vendor: apple model: macos
db: NVD ids: CVE-2022-48618, CVE-2024-23222

Trust: 3.75

Fetched: Feb. 4, 2024, 10:04 a.m., Published: Jan. 30, 2024, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2023-4001

Trust: 5.0

Fetched: Feb. 4, 2024, 10:03 a.m., Published: Jan. 24, 2024, 11:43 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: apple tv
vendor: apple model: webkit
vendor: apple model: tvos
vendor: apple model: iphone
vendor: apple model: macos
vendor: apple model: watch
vendor: apple model: ipad
db: NVD ids: CVE-2024-23222

Trust: 3.25

Fetched: Feb. 4, 2024, 9:56 a.m., Published: Jan. 10, 2024, 7:50 a.m.
Vulnerabilities: input validation flaw
Affected productsExternal IDs

Trust: 4.25

Fetched: Feb. 4, 2024, 9:55 a.m., Published: Feb. 16, 2024, midnight
Vulnerabilities: cross-site scripting, sql injection, injection attack
Affected productsExternal IDs
vendor: essential model: phone
vendor: check point model: check point