VARIoT news about IoT security

Trust: 3.0

Fetched: Jan. 21, 2026, 9:35 a.m., Published: Jan. 21, 2024, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 3.5

Fetched: Jan. 21, 2026, 9:34 a.m., Published: Jan. 15, 2026, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel
vendor: oneplus model: oneplus
vendor: oneplus model: one
vendor: essential model: phone
db: NVD ids: CVE-2025-36911

Trust: 5.5

Fetched: Jan. 21, 2026, 9:33 a.m., Published: Jan. 17, 2026, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
vendor: google model: android
vendor: google model: pixel
vendor: samsung model: android
vendor: samsung model: samsung galaxy
vendor: samsung model: android phone
vendor: samsung model: galaxy
vendor: samsung model: samsung
db: NVD ids: CVE-2025-36911

Trust: 3.0

Fetched: Jan. 20, 2026, 9:06 a.m., Published: Jan. 2, 2026, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 4.25

Fetched: Jan. 18, 2026, 10:07 a.m., Published: Dec. 23, 2025, 5:30 p.m.
Vulnerabilities: code execution, command injection, authentication bypass...
Affected productsExternal IDs
vendor: sonicwall model: sma1000
vendor: cisco model: routers
vendor: palo model: networks
vendor: palo model: firewall
db: NVD ids: CVE-2025-23006, CVE-2025-40602, CVE-2025-59719, CVE-2025-37164, CVE-2025-59718
Related entries in the VARIoT vulnerabilities database: VAR-202510-3116

Trust: 5.5

Fetched: Jan. 18, 2026, 10:06 a.m., Published: Dec. 23, 2025, 12:45 p.m.
Vulnerabilities: code execution, authentication bypass, improper access control...
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: webkit
db: NVD ids: CVE-2025-64537, CVE-2025-62221, CVE-2024-3596, CVE-2025-13970, CVE-2025-66430, CVE-2025-59719, CVE-2025-55182, CVE-2025-14174, CVE-2025-59385, CVE-2025-59287, CVE-2025-43529, CVE-2025-59718, CVE-2025-55315

Trust: 4.75

Fetched: Jan. 18, 2026, 10:06 a.m., Published: Jan. 8, 2026, 2:29 p.m.
Vulnerabilities: code execution, memory corruption
Affected productsExternal IDs
db: NVD ids: CVE-2009-0556, CVE-2025-37164

Trust: 4.25

Fetched: Jan. 18, 2026, 10 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 4.75

Fetched: Jan. 18, 2026, 9:59 a.m., Published: Jan. 2, 2026, 8:02 a.m.
Vulnerabilities: memory corruption
Affected productsExternal IDs
vendor: apple model: macos
vendor: apple model: safari
vendor: apple model: webkit
vendor: apple model: watchos
vendor: apple model: software update
vendor: apple model: tvos
vendor: apple model: ipad
vendor: apple model: ipad air
vendor: apple model: iphone
vendor: google model: chrome
db: NVD ids: CVE-2025-43529, CVE-2025-14174

Trust: 3.5

Fetched: Jan. 18, 2026, 9:56 a.m., Published: Jan. 15, 2026, 12:37 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: webkit
vendor: apple model: iphone
db: NVD ids: CVE-2025-43529, CVE-2025-14174

Trust: 5.75

Fetched: Jan. 18, 2026, 9:56 a.m., Published: Jan. 13, 2026, 8:16 a.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
vendor: cisco model: series
vendor: hikvision model: ip cameras
vendor: hikvision model: hikvision
db: NVD ids: CVE-2025-66177, CVE-2025-66176

Trust: 3.25

Fetched: Jan. 18, 2026, 9:55 a.m., Published: Jan. 18, 7965, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu
Related entries in the VARIoT vulnerabilities database: VAR-202309-0729, VAR-202504-1580

Trust: 5.5

Fetched: Jan. 18, 2026, 9:55 a.m., Published: Jan. 16, 2026, 9:02 a.m.
Vulnerabilities: command injection, os command injection, command execution...
Affected productsExternal IDs
vendor: asus model: gt-ac5300
vendor: asus model: router
vendor: asus model: dsl-ac68u
vendor: asus model: routers
vendor: asus model: rt-ac1300gplus
vendor: asus model: rt-ac1200hp
vendor: asus model: gt-ax11000
vendor: asus model: asus
vendor: asus model: 4g-ac55u
vendor: cisco model: router
vendor: cisco model: routers
db: NVD ids: CVE-2023-39780, CVE-2025-2492, CVE-2023-41346, CVE-2024-12912, CVE-2023-41345, CVE-2023-41347, CVE-2023-41348

Trust: 5.5

Fetched: Jan. 18, 2026, 9:54 a.m., Published: Jan. 16, 2026, 9:15 a.m.
Vulnerabilities: code execution, buffer overrun, integer overflow...
Affected productsExternal IDs
vendor: samsung model: android
vendor: samsung model: mobile
vendor: samsung model: samsung
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2025-36934, CVE-2025-49415, CVE-2025-54957

Trust: 5.5

Fetched: Jan. 18, 2026, 9:52 a.m., Published: Jan. 16, 2026, 12:22 p.m.
Vulnerabilities: code execution, integer overflow, privilege escalation
Affected productsExternal IDs
vendor: samsung model: android
vendor: samsung model: mobile
vendor: samsung model: samsung
vendor: google model: android
vendor: google model: pixel
db: NVD ids: CVE-2025-36934, CVE-2025-54957

Trust: 3.75

Fetched: Jan. 18, 2026, 9:49 a.m., Published: Jan. 17, 2026, 12:54 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2025-36911

Trust: 4.75

Fetched: Jan. 18, 2026, 9:49 a.m., Published: Jan. 15, 2026, 1:41 p.m.
Vulnerabilities: memory corruption
Affected productsExternal IDs
vendor: blueman model: blueman
vendor: aruba model: aruba instant
vendor: aruba model: instant
db: NVD ids: CVE-2025-37165, CVE-2023-52340, CVE-2025-37166, CVE-2022-48839

Trust: 3.25

Fetched: Jan. 18, 2026, 9:49 a.m., Published: Dec. 24, 2025, 7:27 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2018-25140

Trust: 4.75

Fetched: Jan. 18, 2026, 9:48 a.m., Published: Jan. 15, 2026, 5 a.m.
Vulnerabilities: code execution, denial of service, information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2025-23281, CVE-2025-23309, CVE-2022-36392, CVE-2025-23347, CVE-2025-23286, CVE-2022-38102, CVE-2025-23288, CVE-2025-23276, CVE-2025-23345

Trust: 3.75

Fetched: Jan. 18, 2026, 9:47 a.m., Published: Jan. 15, 2026, 5 a.m.
Vulnerabilities: code execution, denial of service, information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2022-36392, CVE-2024-44074