VARIoT news about IoT security

Trust: 5.75

Fetched: Sept. 26, 2025, 10:55 a.m., Published: Sept. 25, 2025, 12:43 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: cisco model: cisco ios
vendor: cisco model: routers
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe
db: NVD ids: CVE-2025-20352
Related entries in the VARIoT vulnerabilities database: VAR-202007-1057

Trust: 3.75

Fetched: Sept. 23, 2025, 9:59 a.m., Published: Sept. 5, 2025, 3:11 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: chrome
vendor: cisco model: asa software
db: NVD ids: CVE-2020-3452

Trust: 5.25

Fetched: Sept. 23, 2025, 9:59 a.m., Published: Sept. 2, 2025, 9:11 p.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2025-57808

Trust: 3.75

Fetched: Sept. 23, 2025, 9:56 a.m., Published: Aug. 27, 2025, 1:56 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: samsung model: samsung
vendor: samsung model: mobile
vendor: samsung model: mobile devices
vendor: google model: android
vendor: google model: pixel
vendor: motorola model: android
vendor: motorola model: motorola
vendor: oneplus model: oneplus
vendor: huawei model: huawei

Trust: 5.25

Fetched: Sept. 23, 2025, 9:55 a.m., Published: Sept. 18, 2025, midnight
Vulnerabilities: process crash, bounds access issue
Affected productsExternal IDs
vendor: trend micro model: security
vendor: trend model: security
vendor: apple model: iphone
vendor: apple model: ipad air
vendor: apple model: ipad
db: NVD ids: CVE-2025-43346, CVE-2025-43358, CVE-2025-43362, CVE-2025-43203, CVE-2025-43356, CVE-2025-43302, CVE-2025-43295, CVE-2025-43355, CVE-2025-43342, CVE-2025-43359, CVE-2025-43299, CVE-2025-43349

Trust: 3.75

Fetched: Sept. 23, 2025, 9:54 a.m., Published: -
Vulnerabilities: privilege escalation, authentication flaw, code execution...
Affected productsExternal IDs
db: NVD ids: CVE-2025-52548, CVE-2025-52547, CVE-2025-52549, CVE-2025-52543, CVE-2025-52546, CVE-2025-52550, CVE-2025-52545, CVE-2025-6519, CVE-2025-52544, CVE-2025-52551

Trust: 4.75

Fetched: Sept. 23, 2025, 9:52 a.m., Published: Sept. 15, 2025, 6 a.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: dnsmasq model: dnsmasq
db: NVD ids: CVE-2024-38058, CVE-2024-1086

Trust: 4.0

Fetched: Sept. 23, 2025, 9:52 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: information exposure
Affected productsExternal IDs
db: NVD ids: CVE-2025-50110

Trust: 4.5

Fetched: Sept. 23, 2025, 9:51 a.m., Published: Sept. 17, 2025, 12:53 p.m.
Vulnerabilities: memory corruption, code execution
Affected productsExternal IDs
vendor: apple model: software update
vendor: apple model: ipad
vendor: apple model: iphone
db: NVD ids: CVE-2025-43300

Trust: 4.25

Fetched: Sept. 23, 2025, 9:50 a.m., Published: Sept. 22, 2025, 6:46 p.m.
Vulnerabilities: privilege escalation, code execution
Affected productsExternal IDs
vendor: trend micro model: security
vendor: trend model: security
vendor: apple model: iphone
vendor: apple model: mac os
vendor: apple model: safari
vendor: apple model: software update
vendor: apple model: macos
vendor: apple model: ipad
vendor: apple model: watchos
db: NVD ids: CVE-2025-432543298, CVE-2025-43300, CVE-2025-43304

Trust: 4.5

Fetched: Sept. 23, 2025, 9:50 a.m., Published: Sept. 1, 2025, midnight
Vulnerabilities: replay attack, authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2025-53947, CVE-2025-52873, CVE-2025-54754, CVE-2025-54860, CVE-2025-54497, CVE-2025-54818, CVE-2025-53969, CVE-2025-47698, CVE-2025-54810

Trust: 4.75

Fetched: Sept. 23, 2025, 9:49 a.m., Published: Sept. 23, 2025, midnight
Vulnerabilities: privilege escalation, improper access control, code execution...
Affected productsExternal IDs
db: NVD ids: CVE-2022-24526, CVE-2021-43891, CVE-2024-49049, CVE-2025-20570, CVE-2021-34528, CVE-2025-55319, CVE-2021-28475, CVE-2023-29338, CVE-2021-31214, CVE-2020-17148, CVE-2021-27084, CVE-2024-49050, CVE-2025-21264, CVE-2023-36742, CVE-2023-21779, CVE-2021-34529, CVE-2020-17104, CVE-2022-38020, CVE-2025-32726, CVE-2022-30129, CVE-2022-26921, CVE-2020-17023, CVE-2025-49714, CVE-2022-41034, CVE-2021-34479, CVE-2020-16881, CVE-2025-24039, CVE-2025-26631, CVE-2021-42322, CVE-2022-41042, CVE-2020-17159, CVE-2021-27060, CVE-2021-28457, CVE-2023-24893, CVE-2025-24042, CVE-2021-28469, CVE-2021-26437, CVE-2021-28473, CVE-2021-28967, CVE-2023-33144, CVE-2024-26165, CVE-2022-21991, CVE-2021-28477, CVE-2021-1639, CVE-2020-17150, CVE-2024-43601, CVE-2021-43908, CVE-2020-16977, CVE-2024-43488, CVE-2021-31211, CVE-2021-28471

Trust: 4.5

Fetched: Sept. 23, 2025, 9:48 a.m., Published: Sept. 19, 2025, 10:41 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: watchguard model: watchguard fireware
vendor: watchguard model: firebox
vendor: watchguard model: fireware
db: NVD ids: CVE-2025-9242

Trust: 4.0

Fetched: Sept. 23, 2025, 9:45 a.m., Published: Sept. 3, 2025, midnight
Vulnerabilities: authentication issue, default credentials, default password...
Affected productsExternal IDs
vendor: trendmicro model: security
vendor: schneider model: monitor
vendor: trend model: security
vendor: huawei model: huawei
vendor: essential model: phone
vendor: trend micro model: security
vendor: cisco model: series
vendor: cisco model: technical support
vendor: cisco model: h

Trust: 3.75

Fetched: Sept. 23, 2025, 9:43 a.m., Published: Sept. 16, 2025, 7:48 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: software update
vendor: apple model: macos
vendor: apple model: ipad
vendor: apple model: watchos
vendor: apple model: watch
vendor: apple model: apple tv
vendor: apple model: ipod touch
vendor: apple model: iphone
vendor: apple model: ipad air
vendor: apple model: macbook
vendor: apple model: imac
vendor: apple model: safari
vendor: apple model: macbook air
vendor: apple model: macbook pro
db: NVD ids: CVE-2025-43357, CVE-2025-43327

Trust: 5.25

Fetched: Sept. 23, 2025, 9:42 a.m., Published: Sept. 3, 2025, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2025-10159

Trust: 5.0

Fetched: Sept. 23, 2025, 9:41 a.m., Published: Sept. 5, 2025, midnight
Vulnerabilities: improper validation
Affected productsExternal IDs
vendor: westermo model: weos
db: NVD ids: CVE-2025-46419

Trust: 5.5

Fetched: Sept. 23, 2025, 9:38 a.m., Published: Sept. 18, 2025, 12:06 a.m.
Vulnerabilities: privilege escalation, memory corruption
Affected productsExternal IDs
vendor: dram model: dram
db: NVD ids: CVE-2025-6202

Trust: 5.0

Fetched: Sept. 23, 2025, 9:38 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: default password, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-57578

Trust: 4.25

Fetched: Sept. 23, 2025, 9:37 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: access control vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2025-50777