VARIoT news about IoT security

Trust: 3.5

Fetched: May 21, 2024, 9:32 a.m., Published: May 17, 2023, 4:22 a.m.
Vulnerabilities: cross-site scripting, sql injection
Affected productsExternal IDs
vendor: filezilla model: server

Trust: 5.0

Fetched: May 21, 2024, 9:30 a.m., Published: May 21, 4070, midnight
Vulnerabilities: memory access issue
Affected productsExternal IDs
vendor: google model: chrome
db: NVD ids: CVE-2024-4761, CVE-2024-2887, CVE-2024-0519

Trust: 3.5

Fetched: May 21, 2024, 9:30 a.m., Published: May 7, 2024, 6:10 p.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
vendor: google model: android
vendor: samsung model: galaxy

Trust: 3.75

Fetched: May 21, 2024, 9:28 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: mobile devices
vendor: samsung model: mobile
vendor: samsung model: samsung mobile
db: NVD ids: CVE-2024-20821

Trust: 3.0

Fetched: May 21, 2024, 9:26 a.m., Published: May 21, 2024, 6:53 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-51365, CVE-2923-51365, CVE-2023-51364

Trust: 3.75

Fetched: May 21, 2024, 9:24 a.m., Published: April 26, 2024, 12:45 p.m.
Vulnerabilities: command execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-20353, CVE-2024-20359

Trust: 4.75

Fetched: May 21, 2024, 9:22 a.m., Published: May 14, 2024, midnight
Vulnerabilities: privilege escalation, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2023-47616, CVE-2023-47611, CVE-2023-47610

Trust: 4.0

Fetched: May 21, 2024, 9:20 a.m., Published: May 17, 2024, 3:15 p.m.
Vulnerabilities: memory corruption
Affected productsExternal IDs
db: NVD ids: CVE-2024-35848

Trust: 3.0

Fetched: May 21, 2024, 9:19 a.m., Published: May 15, 2024, 7:10 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-20326, CVE-2024-20389

Trust: 4.75

Fetched: May 21, 2024, 9:19 a.m., Published: May 21, 2024, 2:15 a.m.
Vulnerabilities: denial of service, buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2023-37929

Trust: 3.0

Fetched: May 21, 2024, 9:18 a.m., Published: May 20, 2024, 10:15 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-36009

Trust: 3.0

Fetched: May 21, 2024, 9:16 a.m., Published: May 3, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs

Trust: 5.75

Fetched: May 21, 2024, 9:16 a.m., Published: May 20, 2024, 2:57 p.m.
Vulnerabilities: memory corruption, authentication bypass, buffer overflow...
Affected productsExternal IDs
vendor: qnap model: qnap qts
db: NVD ids: CVE-2023-50361, CVE-2023-50364, CVE-2024-27130

Trust: 4.75

Fetched: May 21, 2024, 9:15 a.m., Published: May 21, 2024, 2:15 a.m.
Vulnerabilities: denial of service, buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2024-0816

Trust: 3.0

Fetched: May 21, 2024, 9:14 a.m., Published: May 14, 2024, 6 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 4.25

Fetched: May 21, 2024, 9:11 a.m., Published: Sept. 28, 2020, noon
Vulnerabilities: command execution, arbitrary command execution
Affected productsExternal IDs
vendor: nest model: learning thermostat
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566, VAR-202109-1909, VAR-202008-0248, VAR-202102-0898, VAR-202108-1914

Trust: 4.25

Fetched: May 21, 2024, 9:10 a.m., Published: March 11, 2022, 7:39 p.m.
Vulnerabilities: request forgery, authorization vulnerability, command injection...
Affected productsExternal IDs
vendor: sonicwall model: secure mobile access
vendor: sonicwall model: ssl vpn
vendor: accellion model: accellion file transfer appliance
vendor: accellion model: file transfer appliance
db: NVD ids: CVE-2021-26855, CVE-2021-44228, CVE-2021-30120, CVE-2021-27101, CVE-2021-27104, CVE-2021-27102, CVE-2021-40444, CVE-2021-27103, CVE-2020-1472, CVE-2021-20016, CVE-2021-30116, CVE-2021-30119, CVE-2021-36942, CVE-2021-40386, CVE-2021-22893

Trust: 3.0

Fetched: May 21, 2024, 9:09 a.m., Published: Oct. 12, 2016, midnight
Vulnerabilities: cross-site scripting, buffer overflow, code execution
Affected productsExternal IDs

Trust: 3.5

Fetched: May 21, 2024, 9:07 a.m., Published: July 29, 2022, midnight
Vulnerabilities: default credentials, code execution
Affected productsExternal IDs
vendor: motorola model: motorola

Trust: 4.75

Fetched: May 19, 2024, 9:20 a.m., Published: May 16, 2024, 6:56 p.m.
Vulnerabilities: command injection, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2020-6977, CVE-2024-27107, CVE-2024-1628