VARIoT news about IoT security

Trust: 5.25

Fetched: March 7, 2025, 9:14 a.m., Published: May 7, 2025, midnight
Vulnerabilities: os command injection, code execution, path traversal...
Affected productsExternal IDs
vendor: trend model: security
vendor: parallels model: tools
db: NVD ids: CVE-2025-20002, CVE-2025-23410, CVE-2025-21092, CVE-2025-24924, CVE-2025-1316

Trust: 4.75

Fetched: March 7, 2025, 9:14 a.m., Published: March 5, 2025, 9:48 a.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: google model: android
vendor: alsa model: alsa
db: NVD ids: CVE-2024-53104, CVE-2024-43093, CVE-2024-50302

Trust: 5.5

Fetched: March 7, 2025, 9:13 a.m., Published: March 6, 2025, 9:30 p.m.
Vulnerabilities: privilege escalation, code execution
Affected productsExternal IDs
vendor: samsung model: samsung
vendor: oneplus model: oneplus
vendor: google model: android
vendor: google model: pixel
vendor: motorola model: android
vendor: motorola model: motorola
db: NVD ids: CVE-2024-43093, CVE-2024-50302

Trust: 3.25

Fetched: March 7, 2025, 9:13 a.m., Published: Feb. 28, 2025, 2:07 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-38063

Trust: 3.0

Fetched: March 5, 2025, 9:29 a.m., Published: March 5, 5690, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: bios

Trust: 5.0

Fetched: March 5, 2025, 9:29 a.m., Published: Feb. 24, 2025, 12:53 p.m.
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 4.25

Fetched: March 5, 2025, 9:24 a.m., Published: March 4, 2025, 8:17 a.m.
Vulnerabilities: session fixation
Affected productsExternal IDs
db: NVD ids: CVE-2025-0364, CVE-2024-54761

Trust: 3.75

Fetched: March 5, 2025, 9:24 a.m., Published: Feb. 8, 2025, 5:50 p.m.
Vulnerabilities: kernel panic
Affected productsExternal IDs
vendor: google model: android
Related entries in the VARIoT vulnerabilities database: VAR-202304-1067, VAR-202301-0962

Trust: 4.5

Fetched: March 5, 2025, 9:23 a.m., Published: Dec. 5, 2025, midnight
Vulnerabilities: privilege escalation, authentication bypass
Affected productsExternal IDs
vendor: google model: android
vendor: cisco model: routers
db: NVD ids: CVE-2024-43093, CVE-2023-20118, CVE-2024-50302, CVE-2023-20025, CVE-2018-8639

Trust: 3.75

Fetched: March 5, 2025, 9:22 a.m., Published: March 4, 2025, 8:06 a.m.
Vulnerabilities: code execution, authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2025-0159, CVE-2025-0160

Trust: 4.75

Fetched: March 5, 2025, 9:22 a.m., Published: Feb. 6, 2025, 9:22 a.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
vendor: cisco model: identity services engine
db: NVD ids: CVE-2025-20125, CVE-2025-20124

Trust: 5.0

Fetched: March 5, 2025, 9:20 a.m., Published: Feb. 28, 2025, 7:37 p.m.
Vulnerabilities: kernel panic
Affected productsExternal IDs
vendor: cisco model: nx-os
vendor: cisco model: cisco nx-os
vendor: cisco model: nx-os software
vendor: cisco model: series switches
vendor: cisco model: nexus
vendor: cisco model: series
db: NVD ids: CVE-2025-20111

Trust: 3.5

Fetched: March 5, 2025, 9:19 a.m., Published: Feb. 26, 2025, 4:39 p.m.
Vulnerabilities: encryption vulnerability
Affected productsExternal IDs
vendor: essential model: phone
vendor: google model: android
vendor: apple model: iphone

Trust: 3.0

Fetched: March 5, 2025, 9:18 a.m., Published: March 3, 2025, 3:44 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: nokia model: impact

Trust: 6.0

Fetched: March 5, 2025, 9:17 a.m., Published: March 4, 2025, 6:59 a.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: nx-os
vendor: cisco model: nexus 9000
vendor: cisco model: series switches
vendor: cisco model: nexus 3000
vendor: cisco model: nexus
vendor: cisco model: series
vendor: cisco model: nexus 9000 series
db: NVD ids: CVE-2025-20111, CVE-2025-20161

Trust: 4.5

Fetched: March 5, 2025, 9:16 a.m., Published: March 5, 2025, midnight
Vulnerabilities: integer overflow, information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2025-20653
Related entries in the VARIoT vulnerabilities database: VAR-202303-1268

Trust: 5.75

Fetched: March 5, 2025, 9:16 a.m., Published: March 4, 2025, 5:54 a.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: tp-link model: routers
db: NVD ids: CVE-2023-1389, CVE-2024-3721

Trust: 3.75

Fetched: March 5, 2025, 9:15 a.m., Published: March 20, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: schneider model: monitor
vendor: schneider electric model: monitor
vendor: schneider-electric model: monitor
db: NVD ids: CVE-2025-0816

Trust: 5.0

Fetched: March 5, 2025, 9:14 a.m., Published: Feb. 19, 2025, 3:54 p.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs
vendor: cisco model: series

Trust: 5.25

Fetched: March 5, 2025, 9:13 a.m., Published: March 4, 2025, 12:20 p.m.
Vulnerabilities: code execution, default credentials, command injection...
Affected productsExternal IDs
vendor: zyxel model: vmg1312-b10a
vendor: zyxel model: vmg4380-b10a
vendor: zyxel model: vmg8324-b10a
vendor: zyxel model: vmg8924-b10a
db: NVD ids: CVE-2025-0890, CVE-2024-11667, CVE-2024-40890, CVE-2024-40891