VARIoT news about IoT security

Trust: 5.0

Fetched: March 21, 2025, 9:19 a.m., Published: March 11, 2025, 5:16 p.m.
Vulnerabilities: privilege escalation, improper access control
Affected productsExternal IDs
db: NVD ids: CVE-2025-24076

Trust: 4.25

Fetched: March 21, 2025, 9:19 a.m., Published: March 10, 2025, 7:17 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-24043

Trust: 4.25

Fetched: March 21, 2025, 9:18 a.m., Published: Jan. 21, 7353, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 4.25

Fetched: March 21, 2025, 9:17 a.m., Published: Feb. 21, 7275, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 4.25

Fetched: March 21, 2025, 9:17 a.m., Published: March 15, 2025, 7:18 p.m.
Vulnerabilities: sql injection, cross-site scripting, buffer overflow
Affected productsExternal IDs
vendor: essential model: phone
vendor: apple model: safari
vendor: apple model: watch
vendor: apple model: iphone

Trust: 5.5

Fetched: March 21, 2025, 9:16 a.m., Published: March 12, 2025, 1 p.m.
Vulnerabilities: feature bypass, code execution, information disclosure...
Affected productsExternal IDs
vendor: trend model: security
vendor: trend micro model: security
db: NVD ids: CVE-2025-24984, CVE-2025-24991, CVE-2025-26630, CVE-2025-26633, CVE-2025-24985, CVE-2025-24983, CVE-2025-24993

Trust: 5.75

Fetched: March 21, 2025, 9:16 a.m., Published: March 20, 2025, 8:22 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: mitel model: micollab
db: NVD ids: CVE-2025-23120
Related entries in the VARIoT vulnerabilities database: VAR-202210-0198, VAR-201906-0815

Trust: 4.75

Fetched: March 21, 2025, 9:15 a.m., Published: March 19, 2025, 3:21 p.m.
Vulnerabilities: path traversal, authentication bypass
Affected productsExternal IDs
vendor: fortigate model: fortios
db: NVD ids: CVE-2022-40684, CVE-2018-13379
Related entries in the VARIoT vulnerabilities database: VAR-201708-0889

Trust: 5.5

Fetched: March 21, 2025, 9:14 a.m., Published: May 21, 2025, midnight
Vulnerabilities: command injection, path traversal, directory traversal...
Affected productsExternal IDs
vendor: trend model: security
db: NVD ids: CVE-2017-12637, CVE-2025-1316, CVE-2024-48248

Trust: 4.0

Fetched: March 21, 2025, 9:14 a.m., Published: March 12, 2025, 6:49 a.m.
Vulnerabilities: arbitrary command execution, code execution, header injection...
Affected productsExternal IDs
db: NVD ids: CVE-2025-27636

Trust: 4.0

Fetched: March 21, 2025, 9:14 a.m., Published: March 19, 2025, 8:56 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: wireshark model: wireshark
db: NVD ids: CVE-2025-24071

Trust: 4.75

Fetched: March 21, 2025, 9:12 a.m., Published: March 19, 2025, 6:31 a.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2025-24472

Trust: 4.0

Fetched: March 21, 2025, 9:09 a.m., Published: June 20, 2019, 10:09 a.m.
Vulnerabilities: configuration vulnerability
Affected productsExternal IDs

Trust: 3.0

Fetched: March 21, 2025, 9:07 a.m., Published: March 17, 2025, 1:55 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-57040

Trust: 4.0

Fetched: March 19, 2025, 9:21 a.m., Published: March 12, 2025, 12:02 p.m.
Vulnerabilities: code execution, path traversal, buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2025-26645, CVE-2025-24045, CVE-2025-24084, CVE-2025-24057, CVE-2025-24035, CVE-2025-24064

Trust: 4.0

Fetched: March 19, 2025, 9:20 a.m., Published: March 13, 2025, 4:30 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2025-21590

Trust: 3.25

Fetched: March 19, 2025, 9:18 a.m., Published: March 11, 2025, 4:59 p.m.
Vulnerabilities: privilege elevation
Affected productsExternal IDs
db: NVD ids: CVE-2025-24076

Trust: 3.5

Fetched: March 19, 2025, 9:17 a.m., Published: March 19, 2022, midnight
Vulnerabilities: -

Trust: 4.75

Fetched: March 19, 2025, 9:16 a.m., Published: March 11, 2025, 7:32 a.m.
Vulnerabilities: code execution, memory corruption
Affected productsExternal IDs
vendor: google model: chrome
db: NVD ids: CVE-2025-2137, CVE-2025-2135, CVE-2025-1920, CVE-2025-2136
Related entries in the VARIoT vulnerabilities database: VAR-201404-0592

Trust: 3.5

Fetched: March 19, 2025, 9:15 a.m., Published: March 5, 2025, midnight
Vulnerabilities: sql injection, privilege escalation, buffer overflow...
Affected productsExternal IDs
db: NVD ids: CVE-2014-0160