VARIoT news about IoT security

Trust: 4.5

Fetched: April 29, 2025, 9:12 a.m., Published: April 21, 2025, 12:50 a.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
vendor: google model: android
vendor: alsa model: alsa
db: NVD ids: CVE-2024-53197, CVE-2024-53104, CVE-2024-50302

Trust: 3.75

Fetched: April 29, 2025, 9:11 a.m., Published: April 12, 2025, midnight
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 4.25

Fetched: April 29, 2025, 9:09 a.m., Published: March 29, 2025, 4:07 p.m.
Vulnerabilities: command execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-0282

Trust: 4.5

Fetched: April 29, 2025, 9:05 a.m., Published: March 8, 2022, midnight
Vulnerabilities: code execution, information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2022-25247, CVE-2022-25246
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566, VAR-202110-1691

Trust: 4.25

Fetched: April 27, 2025, 9:15 a.m., Published: April 21, 2025, 2:04 a.m.
Vulnerabilities: sql injection, privilege escalation
Affected productsExternal IDs
vendor: google model: home
vendor: node.js model: node.js
vendor: wireshark model: wireshark
vendor: dell model: bios
vendor: snort model: snort
vendor: aircrack-ng model: aircrack-ng
vendor: trend model: antivirus
vendor: trend model: security
db: NVD ids: CVE-2023-45678, CVE-2017-0147, CVE-2021-44228, CVE-2023-12345, CVE-2021-41773

Trust: 4.5

Fetched: April 27, 2025, 9:14 a.m., Published: April 27, 2000, midnight
Vulnerabilities: session hijacking, cross-site scripting, improper session management...
Affected productsExternal IDs
vendor: apple model: iphone

Trust: 3.75

Fetched: April 27, 2025, 9:13 a.m., Published: April 3, 2025, midnight
Vulnerabilities: default password
Affected productsExternal IDs
db: NVD ids: CVE-2025-24345, CVE-2025-24347, CVE-2025-24349, CVE-2025-24338, CVE-2025-24340, CVE-2025-24346, CVE-2025-24350, CVE-2025-27352, CVE-2025-24342, CVE-2025-24351, CVE-2025-24344, CVE-2025-24339, CVE-2025-24343, CVE-2025-24341, CVE-2025-27532, CVE-2025-24348

Trust: 4.75

Fetched: April 27, 2025, 9:12 a.m., Published: April 27, 2025, 2:01 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2023-20963

Trust: 4.5

Fetched: April 27, 2025, 9:10 a.m., Published: April 25, 2025, 6:35 p.m.
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: sony model: camera

Trust: 3.0

Fetched: April 27, 2025, 9:09 a.m., Published: April 23, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-21864, CVE-2024-44074

Trust: 3.0

Fetched: April 27, 2025, 9:08 a.m., Published: April 17, 2025, 9:27 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: fortigate model: fortios

Trust: 3.25

Fetched: April 27, 2025, 9:08 a.m., Published: Oct. 9, 2019, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: barco model: clickshare

Trust: 3.75

Fetched: April 27, 2025, 9:06 a.m., Published: Dec. 1, 2021, 10:58 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.25

Fetched: April 27, 2025, 9:06 a.m., Published: June 28, 2024, 1:52 p.m.
Vulnerabilities: memory corruption, denial of service, privilege escalation...
Affected productsExternal IDs

Trust: 5.25

Fetched: April 27, 2025, 9:05 a.m., Published: May 27, 2025, midnight
Vulnerabilities: authentication bypass, privilege escalation
Affected productsExternal IDs
vendor: canary model: canary
vendor: siemens model: simatic ipc427e
vendor: siemens model: simatic
vendor: siemens model: simatic ipc127e
vendor: siemens model: scalance
vendor: trend model: security
db: NVD ids: CVE-2024-54092
Related entries in the VARIoT vulnerabilities database: VAR-202403-2416

Trust: 5.5

Fetched: April 25, 2025, 9:03 a.m., Published: April 23, 2025, 8:59 p.m.
Vulnerabilities: command execution, command injection, default credentials...
Affected productsExternal IDs
vendor: palo alto networks model: networks
vendor: palo alto networks model: pan-os
vendor: palo model: networks
vendor: palo model: pan-os
db: NVD ids: CVE-2023-46805, CVE-2024-21887, CVE-2024-3400, CVE-2023-48788, CVE-2024-21893

Trust: 3.25

Fetched: April 25, 2025, 9:02 a.m., Published: -
Vulnerabilities: configuration error
Affected productsExternal IDs

Trust: 3.5

Fetched: April 23, 2025, 9:11 a.m., Published: Aug. 13, 2019, 10:02 a.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: checkpoint model: endpoint security
vendor: palo alto networks model: networks
vendor: palo alto networks model: firewall
vendor: essential model: phone
vendor: google model: chrome
vendor: trend model: internet security
vendor: trend model: security
vendor: trend model: antivirus
vendor: symantec model: norton security
vendor: symantec model: norton
vendor: symantec model: antivirus
vendor: avira model: antivirus
vendor: palo model: networks
vendor: palo model: firewall
vendor: sophos model: firewall
vendor: sophos model: mobile
vendor: cisco model: small business
vendor: cisco model: h
vendor: rising model: antivirus
vendor: trend micro model: internet security
vendor: trend micro model: security
vendor: trend micro model: antivirus

Trust: 3.75

Fetched: April 23, 2025, 9:08 a.m., Published: April 22, 2025, 2:21 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: sophos model: endpoint protection
vendor: trend model: security
vendor: citrix model: netscaler
db: NVD ids: CVE-2024-40711
Related entries in the VARIoT vulnerabilities database: VAR-202504-1178

Trust: 3.0

Fetched: April 23, 2025, 9:07 a.m., Published: April 21, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-32433