VARIoT news about IoT security

Trust: 4.0

Fetched: June 11, 2025, 9:24 a.m., Published: May 11, 2025, midnight
Vulnerabilities: improper access control, information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2025-32722

Trust: 5.75

Fetched: June 11, 2025, 9:22 a.m., Published: June 1, 2025, midnight
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: palo model: networks
vendor: palo model: pan-os
vendor: palo alto networks model: networks
vendor: palo alto networks model: pan-os
db: NVD ids: CVE-2025-0133

Trust: 4.75

Fetched: June 11, 2025, 9:20 a.m., Published: June 11, 2025, 1:54 a.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: cisco model: routers

Trust: 3.75

Fetched: June 11, 2025, 9:19 a.m., Published: June 5, 2025, 5:54 a.m.
Vulnerabilities: command injection
Affected productsExternal IDs
db: NVD ids: CVE-2022-40881, CVE-2022-29303, CVE-2023-29919, CVE-2023-23333

Trust: 4.75

Fetched: June 11, 2025, 9:06 a.m., Published: June 10, 2025, 6:09 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-33073, CVE-2025-33053

Trust: 4.5

Fetched: June 11, 2025, 9:05 a.m., Published: June 10, 2025, 5:57 p.m.
Vulnerabilities: feature bypass, code execution, denial of service...
Affected productsExternal IDs
vendor: check point model: check point
db: NVD ids: CVE-2025-33073, CVE-2025-33053

Trust: 3.25

Fetched: June 10, 2025, 9:42 a.m., Published: Jan. 10, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home
vendor: google model: android

Trust: 3.25

Fetched: June 10, 2025, 9:35 a.m., Published: May 23, 2023, 12:30 p.m.
Vulnerabilities: sql injection, cross-site scripting, file inclusion
Affected productsExternal IDs
vendor: clamav model: clamav
vendor: snort.org model: snort
vendor: snort model: snort
vendor: wireshark model: wireshark

Trust: 6.0

Fetched: June 10, 2025, 9:34 a.m., Published: May 15, 2025, 6:27 a.m.
Vulnerabilities: encryption vulnerability
Affected productsExternal IDs
vendor: hitachi model: jp1/it desktop management
vendor: hitachi model: device manager
db: NVD ids: CVE-2025-27524

Trust: 5.0

Fetched: June 10, 2025, 9:33 a.m., Published: June 6, 2025, 4:39 p.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2025-5408
Related entries in the VARIoT vulnerabilities database: VAR-202505-1714

Trust: 6.5

Fetched: June 10, 2025, 9:23 a.m., Published: June 4, 2025, 8:04 a.m.
Vulnerabilities: buffer overflow, improper validation, authentication bypass...
Affected productsExternal IDs
vendor: mitsubishi model: fx5uc
vendor: mitsubishi model: fx5u
vendor: mitsubishi model: fx5uj
vendor: mitsubishi model: melsec iq-f series
vendor: mitsubishi model: melsec iq-f
vendor: mitsubishi electric model: fx5uc
vendor: mitsubishi electric model: fx5u
vendor: mitsubishi electric model: fx5uj
vendor: mitsubishi electric model: melsec iq-f series
vendor: mitsubishi electric model: melsec iq-f
db: NVD ids: CVE-2025-3755, CVE-2025-3916, CVE-2023-4041

Trust: 4.75

Fetched: June 10, 2025, 9:22 a.m., Published: June 8, 2025, midnight
Vulnerabilities: command execution, information disclosure, memory corruption...
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2025-0073, CVE-2025-1246, CVE-2025-0819, CVE-2025-27038, CVE-2025-21480, CVE-2025-21479

Trust: 5.25

Fetched: June 10, 2025, 9:21 a.m., Published: June 6, 2025, 9:41 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2025-0324

Trust: 6.0

Fetched: June 10, 2025, 9:20 a.m., Published: June 6, 2025, 10:42 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: axis model: axis
db: NVD ids: CVE-2025-0358

Trust: 5.0

Fetched: June 10, 2025, 9:19 a.m., Published: June 4, 2025, 3:54 p.m.
Vulnerabilities: cross-site scripting
Affected productsExternal IDs
vendor: cisco model: intelligent contact management
vendor: cisco model: unified intelligent contact management
vendor: cisco model: unified intelligent contact management enterprise

Trust: 3.5

Fetched: June 10, 2025, 9:18 a.m., Published: June 3, 2025, 1 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: huawei model: huawei
vendor: solar model: sunny webbox
vendor: solar model: webbox
db: NVD ids: CVE-2023-23333, CVE-2023-29919, CVE-2022-29303, CVE-2022-40881

Trust: 4.75

Fetched: June 10, 2025, 9:17 a.m., Published: June 9, 2025, 4:27 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: google chrome
vendor: google model: chrome
vendor: google model: android
vendor: apple model: macos
vendor: apple model: iphone
db: NVD ids: CVE-2025-5419

Trust: 3.75

Fetched: June 10, 2025, 9:04 a.m., Published: June 8, 2025, 6:04 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home
vendor: google model: android
vendor: google model: pixel
vendor: oneplus model: oneplus
vendor: samsung model: samsung
vendor: samsung model: android phone
db: NVD ids: CVE-2025-26441, CVE-2025-26453, CVE-2025-26445, CVE-2025-26443
Related entries in the VARIoT vulnerabilities database: VAR-202212-1132

Trust: 3.75

Fetched: June 8, 2025, 10 a.m., Published: June 6, 2025, 3:10 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: fortigate model: fortios
db: NVD ids: CVE-2022-42475, CVE-2024-21762, CVE-2023-27997, CVE-2024-55591

Trust: 3.0

Fetched: June 8, 2025, 10 a.m., Published: June 5, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android