VARIoT news about IoT security

Trust: 4.0

Fetched: May 16, 2025, 9:27 a.m., Published: May 7, 2025, 3:52 p.m.
Vulnerabilities: file upload vulnerability
Affected productsExternal IDs
vendor: cisco model: ios xe software
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: cisco model: cisco ios xe
vendor: cisco model: wireless controller

Trust: 3.0

Fetched: May 16, 2025, 9:26 a.m., Published: May 15, 2025, 6:30 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-21563

Trust: 4.75

Fetched: May 16, 2025, 9:26 a.m., Published: Jan. 10, 2023, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2025-40556

Trust: 4.0

Fetched: May 14, 2025, 9:16 a.m., Published: Jan. 14, 7503, midnight
Vulnerabilities: information leakage
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 4.0

Fetched: May 14, 2025, 9:16 a.m., Published: May 7, 2025, 3:52 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe software

Trust: 3.5

Fetched: May 14, 2025, 9:14 a.m., Published: May 13, 2025, 6:46 p.m.
Vulnerabilities: code execution, memory corruption
Affected productsExternal IDs
db: NVD ids: CVE-2025-32706, CVE-2025-32701, CVE-2025-32709, CVE-2025-32702, CVE-2025-30400, CVE-2025-26685, CVE-2025-30397

Trust: 5.0

Fetched: May 14, 2025, 9:14 a.m., Published: May 7, 2025, midnight
Vulnerabilities: os command injection, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-11120

Trust: 3.5

Fetched: May 14, 2025, 9:08 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco ios
vendor: cisco model: ios xr software
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: ios xr

Trust: 4.25

Fetched: May 14, 2025, 9:06 a.m., Published: April 16, 2025, 5:38 a.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2025-24994, CVE-2025-24076

Trust: 4.0

Fetched: May 14, 2025, 9:05 a.m., Published: May 14, 2025, 6:09 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel

Trust: 4.75

Fetched: May 14, 2025, 9:04 a.m., Published: May 13, 2025, 4:08 p.m.
Vulnerabilities: service disruption, authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2025-22252

Trust: 3.75

Fetched: May 13, 2025, 9:27 a.m., Published: May 19, 2025, midnight
Vulnerabilities: path traversal, information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2025-0858
Related entries in the VARIoT vulnerabilities database: VAR-202112-0361

Trust: 4.5

Fetched: May 13, 2025, 9:26 a.m., Published: April 17, 2025, 6:02 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: sonicwall model: secure mobile access
vendor: sonicwall model: remote access
vendor: trend model: security
db: NVD ids: CVE-2021-20038
Related entries in the VARIoT vulnerabilities database: VAR-202109-0375

Trust: 5.75

Fetched: May 13, 2025, 9:25 a.m., Published: April 17, 2025, 8:51 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: sonicwall model: sma100
vendor: sonicwall model: secure mobile access
db: NVD ids: CVE-2021-20035

Trust: 3.5

Fetched: May 13, 2025, 9:24 a.m., Published: Nov. 9, 2017, 9:27 a.m.
Vulnerabilities: file inclusion, sql injection, cross-site scripting...
Affected productsExternal IDs
vendor: google model: chrome

Trust: 5.25

Fetched: May 13, 2025, 9:23 a.m., Published: Jan. 13, 7474, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu
db: NVD ids: CVE-2023-28842, CVE-2023-28840, CVE-2024-36621, CVE-2024-23651, CVE-2024-23652, CVE-2024-36623, CVE-2023-28841

Trust: 5.5

Fetched: May 13, 2025, 9:20 a.m., Published: May 12, 2025, 1:41 a.m.
Vulnerabilities: privilege escalation, information disclosure, code execution...
Affected productsExternal IDs
vendor: trend model: security
vendor: google model: android
db: NVD ids: CVE-2025-27363

Trust: 3.5

Fetched: May 13, 2025, 9:12 a.m., Published: April 6, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: aruba model: clearpass
vendor: schneider model: monitor

Trust: 3.75

Fetched: May 13, 2025, 9:09 a.m., Published: May 12, 2025, 6:45 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: macos
vendor: apple model: watch
vendor: apple model: mdnsresponder
vendor: apple model: software update
vendor: apple model: webkit
vendor: apple model: watchos
vendor: apple model: icloud
vendor: mdnsresponder model: mdnsresponder

Trust: 4.0

Fetched: May 13, 2025, 9:09 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software