VARIoT news about IoT security

Trust: 3.5

Fetched: April 29, 2025, 9:20 a.m., Published: Feb. 12, 2024, 4:38 p.m.
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: delegate model: delegate

Trust: 4.0

Fetched: April 29, 2025, 9:19 a.m., Published: April 28, 2025, 12:26 a.m.
Vulnerabilities: code execution, memory overwrite, integer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2025-23016

Trust: 3.75

Fetched: April 29, 2025, 9:16 a.m., Published: April 7, 2025, 6:32 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs

Trust: 3.25

Fetched: April 29, 2025, 9:15 a.m., Published: April 22, 2025, 10:59 a.m.
Vulnerabilities: sql injection, privilege escalation, code injection...
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: access points
vendor: cisco model: ios xe software
vendor: cisco model: series

Trust: 3.0

Fetched: April 29, 2025, 9:15 a.m., Published: April 28, 2025, 1:38 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-24091

Trust: 3.5

Fetched: April 29, 2025, 9:14 a.m., Published: April 28, 2025, 8 p.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-202504-1580

Trust: 6.0

Fetched: April 29, 2025, 9:13 a.m., Published: April 21, 2025, 8:52 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: asus model: asus
vendor: asus model: routers
vendor: asus model: router
db: NVD ids: CVE-2025-2492
Related entries in the VARIoT vulnerabilities database: VAR-202501-3666

Trust: 5.75

Fetched: April 29, 2025, 9:13 a.m., Published: -
Vulnerabilities: authorization flaw, use after free
Affected productsExternal IDs
vendor: apple model: webkit
vendor: apple model: ipad
vendor: apple model: macos
db: NVD ids: CVE-2025-24200, CVE-2025-24201, CVE-2025-24085

Trust: 4.5

Fetched: April 29, 2025, 9:12 a.m., Published: April 21, 2025, 12:50 a.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
vendor: google model: android
vendor: alsa model: alsa
db: NVD ids: CVE-2024-53197, CVE-2024-53104, CVE-2024-50302

Trust: 3.75

Fetched: April 29, 2025, 9:11 a.m., Published: April 12, 2025, midnight
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 4.25

Fetched: April 29, 2025, 9:09 a.m., Published: March 29, 2025, 4:07 p.m.
Vulnerabilities: command execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-0282

Trust: 4.5

Fetched: April 29, 2025, 9:05 a.m., Published: March 8, 2022, midnight
Vulnerabilities: code execution, information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2022-25247, CVE-2022-25246
Related entries in the VARIoT vulnerabilities database: VAR-202112-0566, VAR-202110-1691

Trust: 4.25

Fetched: April 27, 2025, 9:15 a.m., Published: April 21, 2025, 2:04 a.m.
Vulnerabilities: sql injection, privilege escalation
Affected productsExternal IDs
vendor: google model: home
vendor: node.js model: node.js
vendor: wireshark model: wireshark
vendor: dell model: bios
vendor: snort model: snort
vendor: aircrack-ng model: aircrack-ng
vendor: trend model: antivirus
vendor: trend model: security
db: NVD ids: CVE-2023-45678, CVE-2017-0147, CVE-2021-44228, CVE-2023-12345, CVE-2021-41773

Trust: 4.5

Fetched: April 27, 2025, 9:14 a.m., Published: April 27, 2000, midnight
Vulnerabilities: session hijacking, cross-site scripting, improper session management...
Affected productsExternal IDs
vendor: apple model: iphone

Trust: 3.75

Fetched: April 27, 2025, 9:13 a.m., Published: April 3, 2025, midnight
Vulnerabilities: default password
Affected productsExternal IDs
db: NVD ids: CVE-2025-24345, CVE-2025-24347, CVE-2025-24349, CVE-2025-24338, CVE-2025-24340, CVE-2025-24346, CVE-2025-24350, CVE-2025-27352, CVE-2025-24342, CVE-2025-24351, CVE-2025-24344, CVE-2025-24339, CVE-2025-24343, CVE-2025-24341, CVE-2025-27532, CVE-2025-24348

Trust: 4.75

Fetched: April 27, 2025, 9:12 a.m., Published: April 27, 2025, 2:01 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2023-20963

Trust: 4.5

Fetched: April 27, 2025, 9:10 a.m., Published: April 25, 2025, 6:35 p.m.
Vulnerabilities: code execution, denial of service
Affected productsExternal IDs
vendor: sony model: camera

Trust: 3.0

Fetched: April 27, 2025, 9:09 a.m., Published: April 23, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-21864, CVE-2024-44074

Trust: 3.0

Fetched: April 27, 2025, 9:08 a.m., Published: April 17, 2025, 9:27 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: fortigate model: fortios

Trust: 3.25

Fetched: April 27, 2025, 9:08 a.m., Published: Oct. 9, 2019, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: barco model: clickshare