VARIoT news about IoT security

Trust: 4.0

Fetched: Oct. 31, 2025, 9:31 a.m., Published: Oct. 27, 2025, 8:45 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android
db: NVD ids: CVE-2025-12080
Related entries in the VARIoT vulnerabilities database: VAR-202203-0233

Trust: 4.75

Fetched: Oct. 31, 2025, 9:30 a.m., Published: Oct. 29, 2025, 1 p.m.
Vulnerabilities: command injection, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-3721, CVE-2021-3129, CVE-2022-22947, CVE-2017-9841, CVE-2022-47945

Trust: 4.25

Fetched: Oct. 31, 2025, 9:30 a.m., Published: Jan. 31, 7841, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 5.0

Fetched: Oct. 31, 2025, 9:29 a.m., Published: Oct. 31, 2025, 10:56 a.m.
Vulnerabilities: default credentials
Affected productsExternal IDs
vendor: trend model: security

Trust: 4.25

Fetched: Oct. 31, 2025, 9:27 a.m., Published: Oct. 17, 2025, 1:13 p.m.
Vulnerabilities: improper validation, directory traversal, sql injection...
Affected productsExternal IDs
vendor: cisco model: router
vendor: cisco model: ip phone 7800
vendor: cisco model: telepresence collaboration endpoint
vendor: cisco model: telepresence
vendor: cisco model: series
vendor: cisco model: ios xe
vendor: cisco model: ip phones
vendor: cisco model: ip phone
vendor: cisco model: cisco ios xe
vendor: cisco model: roomos
vendor: cisco model: cisco telepresence
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios
vendor: sophos model: endpoint protection
vendor: sophos model: firewall
vendor: snort model: snort
vendor: google model: chrome
vendor: google model: google chrome
vendor: google model: android
vendor: rockwell automation model: factorytalk
vendor: rockwell automation model: studio 5000
vendor: dell model: optiplex
vendor: d-link model: router
vendor: rockwell model: factorytalk
vendor: rockwell model: studio 5000
vendor: essential model: phone
db: NVD ids: CVE-2025-20350, CVE-2025-9066, CVE-2025-5947, CVE-2025-23280, CVE-2025-48984, CVE-2025-42944, CVE-2025-11622, CVE-2025-42902, CVE-2025-23300, CVE-2025-24990, CVE-2025-2934, CVE-2025-23309, CVE-2025-42906, CVE-2025-9068, CVE-2025-42908, CVE-2025-62389, CVE-2025-23352, CVE-2025-9063, CVE-2025-42901, CVE-2025-42939, CVE-2025-61884, CVE-2025-62384, CVE-2025-9713, CVE-2025-10230, CVE-2025-11756, CVE-2023-28863, CVE-2025-10004, CVE-2025-9067, CVE-2025-23282, CVE-2025-24052, CVE-2025-20313, CVE-2025-2884, CVE-2025-23345, CVE-2025-7328, CVE-2025-7329, CVE-2025-62390, CVE-2025-62386, CVE-2025-31672, CVE-2025-54253, CVE-2025-23330, CVE-2025-42937, CVE-2025-11340, CVE-2025-20359, CVE-2025-20360, CVE-2025-48982, CVE-2025-20351, CVE-2025-48983, CVE-2025-49533, CVE-2025-23332, CVE-2025-23347, CVE-2025-42903, CVE-2025-42910, CVE-2025-62392, CVE-2025-11623, CVE-2025-20329, CVE-2025-11001, CVE-2025-0033, CVE-2025-62387, CVE-2025-20109, CVE-2025-42909, CVE-2025-0059, CVE-2025-54539, CVE-2025-57870, CVE-2025-9825, CVE-2025-54254, CVE-2025-5115, CVE-2025-62383, CVE-2025-9640, CVE-2025-48913, CVE-2025-47827, CVE-2025-20314, CVE-2025-37729, CVE-2025-62391, CVE-2025-9437, CVE-2025-62385, CVE-2025-11002, CVE-2025-9064, CVE-2025-6264, CVE-2025-7330, CVE-2025-62388, CVE-2025-59230

Trust: 4.0

Fetched: Oct. 31, 2025, 9:27 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2025-48522

Trust: 3.25

Fetched: Oct. 31, 2025, 9:19 a.m., Published: Oct. 30, 2025, 2:44 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-32347
Related entries in the VARIoT vulnerabilities database: VAR-201805-0721, VAR-201805-0723

Trust: 4.75

Fetched: Oct. 31, 2025, 9:18 a.m., Published: Oct. 30, 2025, 12:51 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: phoenix contact model: plcnext
db: NVD ids: CVE-2025-41668, CVE-2025-41704, CVE-2025-41703, CVE-2018-10728, CVE-2025-41707, CVE-2025-41665, CVE-2025-41705, CVE-2018-10730, CVE-2025-41706
Related entries in the VARIoT vulnerabilities database: VAR-202009-0361

Trust: 3.5

Fetched: Oct. 31, 2025, 9:17 a.m., Published: Oct. 31, 2025, 9:17 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2023-50129, CVE-2023-1748, CVE-2019-17098, CVE-2025-2189, CVE-2024-9991
Related entries in the VARIoT vulnerabilities database: VAR-202203-0233

Trust: 4.75

Fetched: Oct. 31, 2025, 9:15 a.m., Published: Oct. 29, 2025, 3:38 p.m.
Vulnerabilities: command injection, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2024-3721, CVE-2021-3129, CVE-2022-22947, CVE-2017-9841, CVE-2022-47945

Trust: 3.5

Fetched: Oct. 31, 2025, 9:15 a.m., Published: Oct. 28, 2025, 1:50 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: palo alto networks model: networks
vendor: palo model: networks

Trust: 5.25

Fetched: Oct. 28, 2025, 9:35 a.m., Published: Sept. 30, 2025, 11:01 a.m.
Vulnerabilities: memory corruption, code execution
Affected productsExternal IDs
vendor: apple model: watch
vendor: apple model: software update
vendor: apple model: ipad
vendor: apple model: apple tv
vendor: apple model: ipad air
vendor: apple model: macos
vendor: apple model: iphone
db: NVD ids: CVE-2025-43400

Trust: 3.75

Fetched: Oct. 28, 2025, 9:32 a.m., Published: Oct. 24, 2025, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2022-34691, CVE-2025-26647, CVE-2025-59287

Trust: 3.75

Fetched: Oct. 28, 2025, 9:31 a.m., Published: Dec. 30, 2024, 1:48 p.m.
Vulnerabilities: resource exhaustion
Affected productsExternal IDs
vendor: apple model: macos

Trust: 3.0

Fetched: Oct. 28, 2025, 9:31 a.m., Published: April 9, 2025, 3:39 p.m.
Vulnerabilities: information disclosure
Affected productsExternal IDs

Trust: 6.0

Fetched: Oct. 28, 2025, 9:30 a.m., Published: Jan. 28, 7830, midnight
Vulnerabilities: buffer overflow, denial of service, request forgery
Affected productsExternal IDs
vendor: canonical model: ubuntu
db: NVD ids: CVE-2025-6605, CVE-2025-7700, CVE-2023-6603, CVE-2025-10256, CVE-2025-9951

Trust: 4.0

Fetched: Oct. 28, 2025, 9:29 a.m., Published: Oct. 10, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu_linux
db: NVD ids: CVE-2022-50538

Trust: 4.75

Fetched: Oct. 28, 2025, 9:28 a.m., Published: Oct. 7, 2025, midnight
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
db: NVD ids: CVE-2025-6541, CVE-2025-6542

Trust: 5.75

Fetched: Oct. 28, 2025, 9:27 a.m., Published: Oct. 27, 2025, 9:15 a.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: google model: home
db: NVD ids: CVE-2023-28386, CVE-2024-50381, CVE-2023-28649, CVE-2023-31241

Trust: 4.5

Fetched: Oct. 28, 2025, 9:24 a.m., Published: Oct. 1, 2025, midnight
Vulnerabilities: command injection, integer overflow, denial of service...
Affected productsExternal IDs
db: NVD ids: CVE-2025-58428, CVE-2025-55067