VARIoT news about IoT security

Trust: 5.75

Fetched: March 14, 2025, 9:09 a.m., Published: March 13, 2025, 4:17 a.m.
Vulnerabilities: privilege escalation, command execution, code injection
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: nx-os
vendor: cisco model: nx-os software
vendor: cisco model: cisco ios
vendor: cisco model: ios xr software
vendor: cisco model: ios xr
vendor: cisco model: cisco ios xr
db: NVD ids: CVE-2025-20138

Trust: 4.75

Fetched: March 14, 2025, 9:08 a.m., Published: March 13, 2025, 1:27 p.m.
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-13871, CVE-2024-13872

Trust: 3.75

Fetched: March 14, 2025, 9:08 a.m., Published: March 13, 2025, 4:03 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: sinamics
db: NVD ids: CVE-2024-56336

Trust: 5.5

Fetched: March 14, 2025, 9:08 a.m., Published: March 13, 2025, 1:57 a.m.
Vulnerabilities: buffer overflow, privilege escalation, memory corruption
Affected productsExternal IDs
vendor: zoom model: client
vendor: zoom model: zoom client
db: NVD ids: CVE-2025-0150, CVE-2025-0151, CVE-2025-27439, CVE-2025-27440, CVE-2025-0149

Trust: 4.75

Fetched: March 14, 2025, 9:07 a.m., Published: March 13, 2025, 4:21 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: iphone
vendor: apple model: ipad
vendor: apple model: webkit
vendor: apple model: watch
vendor: apple model: macos
vendor: apple model: ipad air
db: NVD ids: CVE-2025-24201

Trust: 4.25

Fetched: March 12, 2025, 9:28 a.m., Published: March 10, 2025, 7:11 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: macos
db: NVD ids: CVE-2024-44179

Trust: 3.25

Fetched: March 12, 2025, 9:28 a.m., Published: March 6, 2025, 4:13 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-58082

Trust: 5.0

Fetched: March 12, 2025, 9:26 a.m., Published: March 10, 2025, 1:55 p.m.
Vulnerabilities: device impersonation
Affected productsExternal IDs
db: NVD ids: CVE-2025-27840
Related entries in the VARIoT vulnerabilities database: VAR-202501-3666

Trust: 3.75

Fetched: March 12, 2025, 9:25 a.m., Published: March 11, 2025, 9:07 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: iphone
vendor: apple model: ipad
vendor: apple model: ipad air
db: NVD ids: CVE-2025-24201, CVE-2025-24200, CVE-2025-24085

Trust: 5.5

Fetched: March 12, 2025, 9:24 a.m., Published: March 11, 2025, 7:42 a.m.
Vulnerabilities: information disclosure, command injection, path traversal...
Affected productsExternal IDs
vendor: palo alto networks model: firewall
vendor: palo alto networks model: networks
vendor: palo alto networks model: pan-os
vendor: korenix model: jetport
vendor: korenix model: jetport 5601
vendor: palo model: firewall
vendor: palo model: networks
vendor: palo model: pan-os
vendor: check point model: check point
vendor: check point model: express
db: NVD ids: CVE-2024-33575, CVE-2024-2876, CVE-2024-11303, CVE-2024-24919, CVE-2024-9593, CVE-2024-11972, CVE-2024-7593, CVE-2024-3400

Trust: 4.5

Fetched: March 12, 2025, 9:24 a.m., Published: March 11, 2025, 6:09 p.m.
Vulnerabilities: code execution, information disclosure, feature bypass...
Affected productsExternal IDs
db: NVD ids: CVE-2025-24984, CVE-2025-24985, CVE-2025-26633, CVE-2025-24991, CVE-2025-24993, CVE-2025-26630, CVE-2025-24983

Trust: 3.0

Fetched: March 12, 2025, 9:23 a.m., Published: March 12, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-27840

Trust: 4.0

Fetched: March 12, 2025, 9:23 a.m., Published: March 11, 2025, 8:26 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: iphone
vendor: apple model: webkit
vendor: apple model: safari
vendor: apple model: ipad
vendor: apple model: ipad air
db: NVD ids: CVE-2025-24201
Related entries in the VARIoT vulnerabilities database: VAR-202110-0522

Trust: 3.75

Fetched: March 12, 2025, 9:22 a.m., Published: Dec. 22, 2021, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: siemens model: ruggedcom rox rx5000
vendor: siemens model: ruggedcom rox rx1510
vendor: siemens model: ruggedcom rox rx1500
vendor: siemens model: ruggedcom rox rx1524
vendor: siemens model: ruggedcom rox rx1511
vendor: siemens model: ruggedcom rox rx1512
vendor: siemens model: ruggedcom rox rx1536
vendor: siemens model: ruggedcom rox rx1400
vendor: siemens model: ruggedcom rox rx1501
vendor: siemens model: ruggedcom
vendor: siemens model: ruggedcom rox mx5000
db: NVD ids: CVE-2021-41546

Trust: 3.75

Fetched: March 11, 2025, 9:30 a.m., Published: Feb. 11, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: ipad air
vendor: apple model: iphone
db: NVD ids: CVE-2025-24200

Trust: 4.5

Fetched: March 11, 2025, 9:30 a.m., Published: March 7, 2025, 1:26 p.m.
Vulnerabilities: code execution, integer overflow, buffer overflow...
Affected productsExternal IDs
vendor: draytek model: routers
vendor: draytek model: vigor
vendor: draytek model: draytek routers
db: NVD ids: CVE-2024-41340, CVE-2024-41336, CVE-2024-41338, CVE-2024-51139, CVE-2024-41339, CVE-2024-41335, CVE-2024-51138

Trust: 3.75

Fetched: March 11, 2025, 9:26 a.m., Published: March 10, 2025, 1:57 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: quick heal model: quick heal

Trust: 3.0

Fetched: March 11, 2025, 9:25 a.m., Published: March 10, 2025, 6:33 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-27840

Trust: 4.75

Fetched: March 11, 2025, 9:25 a.m., Published: March 4, 2025, 12:20 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: trend model: antivirus
vendor: trend model: security
vendor: google model: android
db: NVD ids: CVE-2015-1805

Trust: 3.0

Fetched: March 11, 2025, 9:24 a.m., Published: March 11, 2025, 8:13 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-27607