VARIoT news about IoT security

Trust: 3.25

Fetched: Dec. 6, 2024, 9:43 a.m., Published: May 19, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: samsung

Trust: 4.25

Fetched: Dec. 6, 2024, 9:39 a.m., Published: Nov. 14, 2024, 8:38 a.m.
Vulnerabilities: improper access control, authentication bypass, code execution
Affected productsExternal IDs

Trust: 3.5

Fetched: Dec. 6, 2024, 9:36 a.m., Published: Dec. 6, 2023, midnight
Vulnerabilities: security bypass, buffer overflow, memory corruption
Affected productsExternal IDs
db: NVD ids: CVE-2019-17520, CVE-2019-19194, CVE-2019-17060, CVE-2019-17518, CVE-2019-17061, CVE-2019-19193, CVE-2019-19196, CVE-2019-17517, CVE-2019-19192, CVE-2019-16336, CVE-2019-19195, CVE-2019-17519
Related entries in the VARIoT vulnerabilities database: VAR-202003-1707, VAR-202203-0043, VAR-201909-0594, VAR-201905-0745, VAR-202010-1066

Trust: 3.5

Fetched: Dec. 6, 2024, 9:34 a.m., Published: Sept. 9, 2022, 7:20 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: qnap model: photo station
vendor: qnap model: helpdesk
vendor: qnap systems model: photo station
vendor: qnap systems model: helpdesk
vendor: synology model: photo station
vendor: netatalk model: netatalk
vendor: d-link model: dns-320
vendor: trend model: security
db: NVD ids: CVE-2019-7194, CVE-2022-23125, CVE-2020-2509, CVE-2022-27593, CVE-2021-28799, CVE-2022-0194, CVE-2022-24990, CVE-2021-27876, CVE-2021-27878, CVE-2022-23121, CVE-2020-9054, CVE-2018-19943, CVE-2017-7494, CVE-2020-2506, CVE-2022-0847, CVE-2019-16057, CVE-2018-14839, CVE-2019-7195, CVE-2019-7192, CVE-2022-23122, CVE-2019-7193, CVE-2018-19953, CVE-2021-27877, CVE-2023-27532, CVE-2018-19949

Trust: 3.5

Fetched: Dec. 6, 2024, 9:32 a.m., Published: Oct. 6, 2024, midnight
Vulnerabilities: sql injection, code injection, code execution...
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202003-1707

Trust: 4.25

Fetched: Dec. 6, 2024, 9:30 a.m., Published: -
Vulnerabilities: default credentials, denial of service
Affected productsExternal IDs
vendor: sonos model: sonos
vendor: trend micro model: security
vendor: trend micro model: internet security
vendor: trend micro model: home network security
vendor: trend model: security
vendor: trend model: internet security
vendor: trend model: home network security
db: NVD ids: CVE-2020-9054

Trust: 3.0

Fetched: Dec. 6, 2024, 9:30 a.m., Published: March 17, 2000, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: optiplex
vendor: dell model: latitude

Trust: 5.5

Fetched: Dec. 6, 2024, 9:28 a.m., Published: Dec. 3, 2024, midnight
Vulnerabilities: authentication bypass, code execution, buffer overflow
Affected productsExternal IDs
vendor: netgear model: router
vendor: netgear model: orbi
Related entries in the VARIoT vulnerabilities database: VAR-202003-1707

Trust: 4.25

Fetched: Dec. 6, 2024, 9:28 a.m., Published: -
Vulnerabilities: default credentials, denial of service
Affected productsExternal IDs
vendor: sonos model: sonos
vendor: trend micro model: security
vendor: trend micro model: internet security
vendor: trend micro model: home network security
vendor: trend model: security
vendor: trend model: internet security
vendor: trend model: home network security
db: NVD ids: CVE-2020-9054
Related entries in the VARIoT vulnerabilities database: VAR-202007-0079

Trust: 4.5

Fetched: Dec. 6, 2024, 9:25 a.m., Published: June 29, 2022, midnight
Vulnerabilities: directory traversal, code execution, authentication vulnerability
Affected productsExternal IDs
vendor: citrix model: gateway
vendor: citrix model: application delivery controller
db: NVD ids: CVE-2020-12812, CVE-2019-19781

Trust: 5.0

Fetched: Dec. 6, 2024, 9:22 a.m., Published: May 27, 2020, midnight
Vulnerabilities: default credentials, denial of service
Affected productsExternal IDs
vendor: google model: android
vendor: google model: home
vendor: google model: wifi
vendor: axis model: network camera
vendor: axis model: axis
vendor: axis model: communications
vendor: node.js model: node.js
db: NVD ids: CVE-2005-1190, CVE-2005-1189, CVE-2008-5862

Trust: 3.5

Fetched: Dec. 6, 2024, 9:21 a.m., Published: Nov. 24, 2021, midnight
Vulnerabilities: authentication bypass, denial of service
Affected productsExternal IDs
vendor: siemens model: nucleus
vendor: philips model: intellibridge ec40
vendor: philips model: tasy emr

Trust: 4.0

Fetched: Dec. 6, 2024, 9:21 a.m., Published: Dec. 4, 2024, 4:40 a.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
db: NVD ids: CVE-2024-53999

Trust: 4.0

Fetched: Dec. 6, 2024, 9:21 a.m., Published: Dec. 4, 2024, 1:33 p.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
db: NVD ids: CVE-2024-45717

Trust: 4.75

Fetched: Dec. 4, 2024, 10:10 a.m., Published: Dec. 2, 2024, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2024-20125

Trust: 3.5

Fetched: Dec. 4, 2024, 10:10 a.m., Published: Nov. 12, 2024, midnight
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 5.75

Fetched: Dec. 4, 2024, 10:08 a.m., Published: -
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: fortigate model: fortios
db: NVD ids: CVE-2023-27997

Trust: 5.5

Fetched: Dec. 4, 2024, 10:04 a.m., Published: Nov. 20, 2024, 2:05 p.m.
Vulnerabilities: cross-site scripting, code execution
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: software update
vendor: apple model: ipad
vendor: apple model: iphone
db: NVD ids: CVE-2024-44309, CVE-2024-44308

Trust: 3.25

Fetched: Dec. 4, 2024, 10:03 a.m., Published: Dec. 20, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: samsung

Trust: 3.0

Fetched: Dec. 4, 2024, 10:03 a.m., Published: Dec. 10, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2022-20931