VARIoT news about IoT security

Trust: 4.0

Fetched: May 11, 2025, 9:10 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: ios xe software
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe
vendor: cisco model: cisco ios
vendor: cisco model: wireless controller

Trust: 5.25

Fetched: May 11, 2025, 9:09 a.m., Published: April 24, 2025, 8:48 a.m.
Vulnerabilities: pointer dereference vulnerability
Affected productsExternal IDs
vendor: sonicwall model: sonicos
db: NVD ids: CVE-2025-32818

Trust: 3.5

Fetched: May 11, 2025, 9:08 a.m., Published: April 28, 2025, 9:07 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-32470

Trust: 3.75

Fetched: May 11, 2025, 9:07 a.m., Published: April 29, 2025, 8:53 p.m.
Vulnerabilities: session hijacking
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.0

Fetched: May 11, 2025, 9:06 a.m., Published: April 21, 2025, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2024-44074, CVE-2022-36392

Trust: 4.25

Fetched: May 11, 2025, 9:06 a.m., Published: April 25, 2025, midnight
Vulnerabilities: default credentials
Affected productsExternal IDs

Trust: 3.75

Fetched: May 11, 2025, 9:05 a.m., Published: May 2, 2025, 11 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: siemens model: nucleus

Trust: 5.75

Fetched: May 11, 2025, 9:05 a.m., Published: April 16, 2025, 10:39 p.m.
Vulnerabilities: memory corruption
Affected productsExternal IDs
vendor: apple model: tvos
vendor: apple model: iphone
vendor: apple model: macos
db: NVD ids: CVE-2025-31201, CVE-2025-31200

Trust: 3.25

Fetched: May 11, 2025, 9:04 a.m., Published: April 16, 2025, 10:23 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-22022

Trust: 3.25

Fetched: May 11, 2025, 9:04 a.m., Published: -
Vulnerabilities: configuration error
Affected productsExternal IDs
Related entries in the VARIoT vulnerabilities database: VAR-201805-0262

Trust: 4.0

Fetched: May 9, 2025, 9:31 a.m., Published: May 7, 2025, 12:46 a.m.
Vulnerabilities: command injection
Affected productsExternal IDs
db: NVD ids: CVE-2024-11120, CVE-2018-10561, CVE-2024-6047

Trust: 3.0

Fetched: May 9, 2025, 9:29 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ios xr
vendor: cisco model: ios xe
vendor: cisco model: nx-os
vendor: cisco model: ios xr software
vendor: cisco model: nx-os software
vendor: cisco model: cisco ios
vendor: cisco model: router
vendor: cisco model: ios xe software
Related entries in the VARIoT vulnerabilities database: VAR-202505-1414, VAR-202505-1415, VAR-202505-1034

Trust: 4.25

Fetched: May 9, 2025, 9:27 a.m., Published: May 7, 2025, 8:18 p.m.
Vulnerabilities: privilege escalation, denial of service, path traversal...
Affected productsExternal IDs
vendor: sonicwall model: sma 100
vendor: sonicwall model: secure mobile access
db: NVD ids: CVE-2025-32820, CVE-2025-32819, CVE-2025-32821

Trust: 5.25

Fetched: May 9, 2025, 9:27 a.m., Published: July 9, 2021, midnight
Vulnerabilities: denial of service, privilege escalation
Affected productsExternal IDs
vendor: nodejs model: node.js
vendor: node.js model: node.js
db: NVD ids: CVE-2021-22918, CVE-2021-23362, CVE-2021-22921

Trust: 3.25

Fetched: May 9, 2025, 9:26 a.m., Published: Jan. 9, 7501, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu
Related entries in the VARIoT vulnerabilities database: VAR-202203-1150, VAR-202412-2441, VAR-202203-0700

Trust: 3.75

Fetched: May 9, 2025, 9:26 a.m., Published: April 22, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: webex
vendor: cisco model: routers
vendor: cisco model: cisco webex
vendor: cisco model: router
vendor: draytek model: draytek routers
vendor: draytek model: routers
db: NVD ids: CVE-2022-26187, CVE-2025-1863, CVE-2024-12987, CVE-2022-26210

Trust: 3.5

Fetched: May 9, 2025, 9:24 a.m., Published: May 15, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: industrial ethernet
vendor: cisco model: ios software
vendor: cisco model: device manager
vendor: cisco model: cisco ios
db: NVD ids: CVE-2025-20164

Trust: 4.25

Fetched: May 9, 2025, 9:24 a.m., Published: May 8, 2025, 9:09 a.m.
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
vendor: brocade model: brocade fabric os
vendor: brocade model: fabric os
vendor: broadcom model: brocade fabric os
db: NVD ids: CVE-2024-11120, CVE-2024-6047

Trust: 4.0

Fetched: May 9, 2025, 9:18 a.m., Published: Jan. 9, 7464, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 5.0

Fetched: May 9, 2025, 9:17 a.m., Published: May 7, 2025, 5:36 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: cisco model: industrial ethernet
vendor: cisco model: ios software
vendor: cisco model: device manager
vendor: cisco model: cisco ios
db: NVD ids: CVE-2025-20164