VARIoT IoT exploits database

Affected products: vendor, model and version
Type can be e.g: Remote Code Execution or Denial of Service
Look up free text in title and description

VAR-E-201805-0465 No CVE Siemens SIMATIC S7-1200 CPU - Cross-Site Request Forgery - Linux webapps Exploit EDB ID: 44667
Siemens SIMATIC S7-1200 CPU - Cross-Site Request Forgery. CVE-2015- 5698 . webapps exploit for Linux platform
VAR-E-201805-0052 CVE-2018-3639
AMD / ARM / Intel - Speculative Execution Variant 4 Speculative Store Bypass - Hardware dos Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201805-0963
EDB ID: 44695
AMD / ARM / Intel - Speculative Execution Variant 4 Speculative Store Bypass. CVE-2018-3639 . dos exploit for Hardware platform
VAR-E-201805-0394 No CVE mySCADA myPRO 7 - Hard-Coded Credentials Vulnerability No EDB ID
VAR-E-201805-0283 No CVE Fastweb FASTGate 0.00.47 - Cross-site Request Forgery No EDB ID
VAR-E-201805-0028 No CVE Intelbras NCLOUD 300 1.0 - Authentication bypass Exploit No EDB ID
VAR-E-201805-0456 No CVE Siemens SIMATIC S7-1200 CPU - Cross-Site Request Forgery Vulnerability No EDB ID
VAR-E-201805-0510 No CVE mySCADA myPRO 7 - Hard-Coded Credentials EDB ID: 44656
VAR-E-201805-0246 CVE-2018-11311
mySCADA myPRO 7 - Hardcoded Credentials - Hardware remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201805-0803
EDB ID: 48620
mySCADA myPRO 7 - Hardcoded Credentials. CVE-2018-11311 . remote exploit for Hardware platform
VAR-E-201805-0057 CVE-2018-11094
Intelbras NCLOUD 300 1.0 - Authentication bypass - Hardware webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201805-0554
EDB ID: 44637
Intelbras NCLOUD 300 1.0 - Authentication bypass. CVE-2018-11094 . webapps exploit for Hardware platform
VAR-E-201805-0367 CVE-2018-6023
Fastweb FASTGate 0.00.47 - Cross-Site Request Forgery - Hardware webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201805-1046
EDB ID: 44606
Fastweb FASTGate 0.00.47 - Cross-Site Request Forgery. CVE-2018-6023 . webapps exploit for Hardware platform
VAR-E-201804-0362 No CVE TP-Link Technologies TL-WA850RE Wi-Fi Range Extender Unauthorized Remote Reboot No EDB ID
TP-Link Technologies TL-WA850RE Wi-Fi Range Extender suffers from an unauthorized remote reboot vulnerability.
VAR-E-201804-0244 CVE-2018-10110
D-Link DIR-615 Wireless Router - Persistent Cross Site Scripting - Hardware remote Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201804-0880
EDB ID: 44473
D-Link DIR-615 Wireless Router - Persistent Cross Site Scripting. CVE-2018-10110 . remote exploit for Hardware platform
VAR-E-201804-0021 CVE-2016-7786
Sophos Cyberoam UTM CR25iNG - 10.6.3 MR-5 - Direct Object Reference - JSP webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201704-0104
EDB ID: 44469
Sophos Cyberoam UTM CR25iNG - 10.6.3 MR-5 - Direct Object Reference. CVE-2016-7786 . webapps exploit for JSP platform
VAR-E-201804-0212 No CVE Moxa AWK-3131A 1.4 < 1.7 - Username OS Command Injection Exploit No EDB ID
VAR-E-201804-0344 CVE-2018-9248
FiberHome VDSL2 Modem HG 150-UB - Authentication Bypass - Hardware webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201804-1417
EDB ID: 44413
FiberHome VDSL2 Modem HG 150-UB - Authentication Bypass. CVE-2018-9248 . webapps exploit for Hardware platform
VAR-E-201804-0415 No CVE D-Link DIR-601 - Admin Password Disclosure Vulnerability No EDB ID
VAR-E-201804-0266 CVE-2018-5708
DLink DIR-601 - Admin Password Disclosure - Hardware webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201803-2161
EDB ID: 44388
DLink DIR-601 - Admin Password Disclosure. CVE-2018-5708 . webapps exploit for Hardware platform
VAR-E-201803-0164 No CVE Vtiger CRM 6.3.0 - Authenticated Arbitrary File Upload Exploit No EDB ID
VAR-E-201803-0006 No CVE Advantech WebAccess < 8.1 - webvrpcs DrawSrv.dll Path BwBuildPath Stack-Based Buffer Overflow - Windows remote Exploit EDB ID: 44376
Advantech WebAccess < 8.1 - webvrpcs DrawSrv.dll Path BwBuildPath Stack-Based Buffer Overflow. CVE-ZDI-16-093 . remote exploit for Windows platform
VAR-E-201803-0114 CVE-2018-9032
D-Link DIR-850L Wireless AC1200 Dual Band Gigabit Cloud Router - Authentication Bypass - PHP webapps Exploit

Related entries in the VARIoT vulnerabilities database: VAR-201803-1970
EDB ID: 44378
D-Link DIR-850L Wireless AC1200 Dual Band Gigabit Cloud Router - Authentication Bypass. CVE-2018-9032 . webapps exploit for PHP platform