VARIoT news about IoT security

Trust: 3.5

Fetched: April 29, 2025, 9:28 a.m., Published: April 10, 2025, 4:28 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: scalance
vendor: siemens model: simatic
vendor: siemens model: simatic ipc127e
vendor: siemens model: simatic ipc427e
vendor: siemens model: simatic ipc847e
vendor: siemens model: siemens simatic ipc227e
vendor: siemens model: simatic ipc227e
vendor: siemens model: siemens simatic ipc847e
vendor: siemens model: siemens simatic ipc127e
vendor: siemens model: siemens simatic ipc427e
db: NVD ids: CVE-2024-54092

Trust: 5.25

Fetched: April 29, 2025, 9:27 a.m., Published: April 25, 2025, 8:57 p.m.
Vulnerabilities: code execution, buffer overflow, privilege escalation...
Affected productsExternal IDs
vendor: google model: android
vendor: apple model: tvos
vendor: apple model: macos
vendor: alsa model: alsa
db: NVD ids: CVE-2025-31200, CVE-2024-53197, CVE-2024-53150, CVE-2025-29824, CVE-2025-22457

Trust: 4.5

Fetched: April 29, 2025, 9:23 a.m., Published: April 7, 2025, 5:06 p.m.
Vulnerabilities: authentication bypass, improper access control
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
vendor: apple model: safari
vendor: apple model: webkit
db: NVD ids: CVE-2025-24201, CVE-2025-23120, CVE-2025-2783, CVE-2025-26633, CVE-2025-2825, CVE-2024-20440, CVE-2025-29927, CVE-2024-20439, CVE-2025-22230
Related entries in the VARIoT vulnerabilities database: VAR-202504-1178

Trust: 5.0

Fetched: April 29, 2025, 9:23 a.m., Published: April 18, 2025, 3:22 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-32433

Trust: 5.75

Fetched: April 29, 2025, 9:22 a.m., Published: April 11, 2025, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
vendor: google model: android
db: NVD ids: CVE-2025-3067

Trust: 4.25

Fetched: April 29, 2025, 9:21 a.m., Published: Jan. 29, 7411, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 3.5

Fetched: April 29, 2025, 9:20 a.m., Published: Feb. 12, 2024, 4:38 p.m.
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: delegate model: delegate

Trust: 4.0

Fetched: April 29, 2025, 9:19 a.m., Published: April 28, 2025, 12:26 a.m.
Vulnerabilities: code execution, memory overwrite, integer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2025-23016

Trust: 3.75

Fetched: April 29, 2025, 9:16 a.m., Published: April 7, 2025, 6:32 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 3.25

Fetched: April 29, 2025, 9:15 a.m., Published: April 22, 2025, 10:59 a.m.
Vulnerabilities: sql injection, privilege escalation, code injection...
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: access points
vendor: cisco model: ios xe software
vendor: cisco model: series

Trust: 3.0

Fetched: April 29, 2025, 9:15 a.m., Published: April 28, 2025, 1:38 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-24091

Trust: 3.5

Fetched: April 29, 2025, 9:14 a.m., Published: April 28, 2025, 8 p.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202504-1580

Trust: 6.0

Fetched: April 29, 2025, 9:13 a.m., Published: April 21, 2025, 8:52 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: asus model: asus
vendor: asus model: routers
vendor: asus model: router
db: NVD ids: CVE-2025-2492
Related entries in the VARIoT vulnerabilities database: VAR-202501-3666

Trust: 5.75

Fetched: April 29, 2025, 9:13 a.m., Published: -
Vulnerabilities: authorization flaw, use after free
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: ipad
vendor: apple model: macos
db: NVD ids: CVE-2025-24200, CVE-2025-24201, CVE-2025-24085

Trust: 4.5

Fetched: April 29, 2025, 9:12 a.m., Published: April 21, 2025, 12:50 a.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
vendor: google model: android
vendor: alsa model: alsa
db: NVD ids: CVE-2024-53197, CVE-2024-53104, CVE-2024-50302

Trust: 3.75

Fetched: April 29, 2025, 9:11 a.m., Published: April 12, 2025, midnight
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 4.25

Fetched: April 29, 2025, 9:09 a.m., Published: March 29, 2025, 4:07 p.m.
Vulnerabilities: command execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-0282

Trust: 4.5

Fetched: April 29, 2025, 9:05 a.m., Published: March 8, 2022, midnight
Vulnerabilities: code execution, information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2022-25247, CVE-2022-25246
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566, VAR-202110-1691

Trust: 4.25

Fetched: April 27, 2025, 9:15 a.m., Published: April 21, 2025, 2:04 a.m.
Vulnerabilities: sql injection, privilege escalation
Affected productsExternal IDs
vendor: google model: home
vendor: node.js model: node.js
vendor: wireshark model: wireshark
vendor: dell model: bios
vendor: snort model: snort
vendor: aircrack-ng model: aircrack-ng
vendor: trend model: antivirus
vendor: trend model: security
db: NVD ids: CVE-2023-45678, CVE-2017-0147, CVE-2021-44228, CVE-2023-12345, CVE-2021-41773

Trust: 4.5

Fetched: April 27, 2025, 9:14 a.m., Published: April 27, 2000, midnight
Vulnerabilities: session hijacking, cross-site scripting, improper session management...
Affected productsExternal IDs
vendor: apple model: iphone