VARIoT news about IoT security

Trust: 4.75

Fetched: March 16, 2025, 9:06 a.m., Published: March 7, 2025, 12:26 p.m.
Vulnerabilities: memory corruption, buffer overflow, integer overflow...
Affected productsExternal IDs
vendor: draytek model: draytek routers
vendor: draytek model: vigor
vendor: draytek model: routers
db: NVD ids: CVE-2024-41336, CVE-2024-41338, CVE-2024-41334, CVE-2024-51139, CVE-2024-51138, CVE-2024-41340, CVE-2024-41335, CVE-2024-41339

Trust: 3.75

Fetched: March 16, 2025, 9:05 a.m., Published: April 23, 2024, 7 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-6318, CVE-2023-6319, CVE-2023-6320, CVE-2023-6317

Trust: 4.75

Fetched: March 16, 2025, 9:04 a.m., Published: March 11, 2025, 6:23 p.m.
Vulnerabilities: security feature bypass, information disclosure, feature bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2025-24993, CVE-2025-24984, CVE-2025-26630, CVE-2025-24983, CVE-2025-24985, CVE-2025-24991, CVE-2025-26633

Trust: 4.75

Fetched: March 16, 2025, 9:03 a.m., Published: March 14, 2025, 5:36 a.m.
Vulnerabilities: command execution
Affected productsExternal IDs
vendor: palo alto networks model: palo alto networks globalprotect
vendor: palo alto networks model: networks
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks globalprotect
vendor: palo model: palo alto networks globalprotect
vendor: palo model: networks
vendor: palo model: firewall
vendor: palo model: networks globalprotect
vendor: trend model: security
vendor: fortigate model: fortios
vendor: cisco model: series
db: NVD ids: CVE-2025-24472, CVE-2024-55591

Trust: 4.75

Fetched: March 14, 2025, 9:19 a.m., Published: March 12, 2025, 3:54 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: ios xr software
vendor: cisco model: series routers
vendor: cisco model: routers
vendor: cisco model: cisco ios
vendor: cisco model: ios xr
vendor: cisco model: series
vendor: cisco model: cisco ios xr

Trust: 3.75

Fetched: March 14, 2025, 9:19 a.m., Published: March 12, 2025, 3:54 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: cisco model: cisco ios
vendor: cisco model: ios xr software
vendor: cisco model: ios xr
vendor: cisco model: cisco ios xr

Trust: 5.0

Fetched: March 14, 2025, 9:18 a.m., Published: Feb. 26, 2025, 3:52 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: series switches
vendor: cisco model: nx-os software
vendor: cisco model: nexus 9000 series
vendor: cisco model: nexus 9000
vendor: cisco model: series
vendor: cisco model: cisco nx-os
vendor: cisco model: nexus 3000
vendor: cisco model: nexus 7000
vendor: cisco model: nx-os
vendor: cisco model: nexus

Trust: 3.75

Fetched: March 14, 2025, 9:18 a.m., Published: Oct. 31, 2023, 7 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software
vendor: cisco model: ios xe
db: NVD ids: CVE-2023-20198, CVE-2023-20273

Trust: 5.25

Fetched: March 14, 2025, 9:17 a.m., Published: Jan. 31, 2025, 4:04 p.m.
Vulnerabilities: code execution, information leak
Affected productsExternal IDs
vendor: broadcom model: linux
vendor: google model: home
vendor: google model: google home
vendor: google model: android
vendor: trend model: security
vendor: trend model: antivirus
db: NVD ids: CVE-2017-0785, CVE-2017-1000250, CVE-2017-1000251
Related entries in the VARIoT vulnerabilities database: VAR-202304-1067

Trust: 3.75

Fetched: March 14, 2025, 9:17 a.m., Published: March 10, 2025, 9:22 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: small business
vendor: cisco model: routers
vendor: cisco model: cisco routers
vendor: cisco model: router
vendor: cisco model: cisco small business
vendor: asus model: asus
vendor: asus model: routers
vendor: asus model: router
vendor: huawei model: huawei
db: NVD ids: CVE-2023-20118

Trust: 5.0

Fetched: March 14, 2025, 9:16 a.m., Published: -
Vulnerabilities: improper validation
Affected productsExternal IDs
vendor: cisco model: identity services engine
vendor: cisco model: cisco identity services engine
db: NVD ids: CVE-2025-20125, CVE-2025-20124
Related entries in the VARIoT vulnerabilities database: VAR-202501-3666

Trust: 4.0

Fetched: March 14, 2025, 9:16 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: ipad
vendor: apple model: iphone
vendor: apple model: macos
vendor: apple model: ipad air
vendor: apple model: webkit
db: NVD ids: CVE-2025-24201, CVE-2025-24200, CVE-2025-24085

Trust: 4.75

Fetched: March 14, 2025, 9:16 a.m., Published: March 14, 2025, 1:55 a.m.
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-13871, CVE-2024-13870, CVE-2024-13872

Trust: 3.75

Fetched: March 14, 2025, 9:14 a.m., Published: March 12, 2025, 9:40 a.m.
Vulnerabilities: device impersonation
Affected productsExternal IDs

Trust: 3.75

Fetched: March 14, 2025, 9:14 a.m., Published: March 12, 2025, 3:54 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: ios xr software
vendor: cisco model: series routers
vendor: cisco model: routers
vendor: cisco model: cisco ios
vendor: cisco model: ios xr
vendor: cisco model: series
vendor: cisco model: cisco ios xr

Trust: 3.75

Fetched: March 14, 2025, 9:13 a.m., Published: March 13, 2025, 5 p.m.
Vulnerabilities: buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2025-0282

Trust: 4.75

Fetched: March 14, 2025, 9:12 a.m., Published: March 12, 2025, 4 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: palo model: networks
vendor: paloaltonetworks model: networks
vendor: palo alto networks model: networks
db: NVD ids: CVE-2025-0117

Trust: 5.5

Fetched: March 14, 2025, 9:11 a.m., Published: May 14, 2025, midnight
Vulnerabilities: improper access control, privilege escalation
Affected productsExternal IDs
vendor: trend model: security
db: NVD ids: CVE-2025-24994

Trust: 4.75

Fetched: March 14, 2025, 9:11 a.m., Published: March 12, 2025, 11:24 a.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2025-2189

Trust: 5.5

Fetched: March 14, 2025, 9:09 a.m., Published: May 14, 2025, midnight
Vulnerabilities: improper access control, security bypass, privilege escalation
Affected productsExternal IDs
vendor: trend model: security
db: NVD ids: CVE-2025-24076