VARIoT news about IoT security

Related entries in the VARIoT vulnerabilities database: VAR-202505-1414, VAR-202505-1415, VAR-202505-1034

Trust: 4.25

Fetched: May 9, 2025, 9:27 a.m., Published: May 7, 2025, 8:18 p.m.
Vulnerabilities: privilege escalation, denial of service, path traversal...
Affected productsExternal IDs
vendor: sonicwall model: sma 100
vendor: sonicwall model: secure mobile access
db: NVD ids: CVE-2025-32820, CVE-2025-32819, CVE-2025-32821

Trust: 5.25

Fetched: May 9, 2025, 9:27 a.m., Published: July 9, 2021, midnight
Vulnerabilities: denial of service, privilege escalation
Affected productsExternal IDs
vendor: nodejs model: node.js
vendor: node.js model: node.js
db: NVD ids: CVE-2021-22918, CVE-2021-23362, CVE-2021-22921

Trust: 3.25

Fetched: May 9, 2025, 9:26 a.m., Published: Jan. 9, 7501, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu
Related entries in the VARIoT vulnerabilities database: VAR-202203-1150, VAR-202412-2441, VAR-202203-0700

Trust: 3.75

Fetched: May 9, 2025, 9:26 a.m., Published: April 22, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: webex
vendor: cisco model: routers
vendor: cisco model: cisco webex
vendor: cisco model: router
vendor: draytek model: draytek routers
vendor: draytek model: routers
db: NVD ids: CVE-2022-26187, CVE-2025-1863, CVE-2024-12987, CVE-2022-26210

Trust: 3.5

Fetched: May 9, 2025, 9:24 a.m., Published: May 15, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: industrial ethernet
vendor: cisco model: ios software
vendor: cisco model: device manager
vendor: cisco model: cisco ios
db: NVD ids: CVE-2025-20164

Trust: 4.25

Fetched: May 9, 2025, 9:24 a.m., Published: May 8, 2025, 9:09 a.m.
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
vendor: brocade model: brocade fabric os
vendor: brocade model: fabric os
vendor: broadcom model: brocade fabric os
db: NVD ids: CVE-2024-11120, CVE-2024-6047

Trust: 4.0

Fetched: May 9, 2025, 9:18 a.m., Published: Jan. 9, 7464, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 5.0

Fetched: May 9, 2025, 9:17 a.m., Published: May 7, 2025, 5:36 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: cisco model: industrial ethernet
vendor: cisco model: ios software
vendor: cisco model: device manager
vendor: cisco model: cisco ios
db: NVD ids: CVE-2025-20164

Trust: 4.5

Fetched: May 9, 2025, 9:16 a.m., Published: May 7, 2025, 8:10 p.m.
Vulnerabilities: command injection, os command injection
Affected productsExternal IDs
vendor: trend model: security

Trust: 3.0

Fetched: May 9, 2025, 9:16 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software

Trust: 3.0

Fetched: May 9, 2025, 9:15 a.m., Published: May 7, 2025, 3:52 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: nx-os software
vendor: cisco model: ios xe
vendor: cisco model: cisco sd-wan
vendor: cisco model: ios xe software
vendor: cisco model: nx-os
vendor: cisco model: sd-wan
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xe sd-wan software
vendor: cisco model: catalyst
vendor: cisco model: ios software
vendor: cisco model: routers
vendor: cisco model: cisco ios
vendor: cisco model: router

Trust: 5.5

Fetched: May 9, 2025, 9:14 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: command injection, injection attack, information disclosure
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: cisco ios xe
vendor: cisco model: cisco ios
vendor: cisco model: ios xe software
db: NVD ids: CVE-2025-20195, CVE-2025-20193, CVE-2025-20194

Trust: 4.0

Fetched: May 9, 2025, 9:13 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: privilege escalation
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: ios xe software
vendor: cisco model: industrial ethernet
vendor: cisco model: ios software
vendor: cisco model: device manager
vendor: cisco model: cisco ios

Trust: 3.75

Fetched: May 9, 2025, 9:11 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: integrated services routers
vendor: cisco model: nx-os software
vendor: cisco model: ios xe
vendor: cisco model: catalyst 8500
vendor: cisco model: ios xe software
vendor: cisco model: ios xr
vendor: cisco model: nx-os
vendor: cisco model: ios xr software
vendor: cisco model: cisco ios xe
vendor: cisco model: series integrated services routers
vendor: cisco model: catalyst
vendor: cisco model: ios software
vendor: cisco model: routers
vendor: cisco model: cisco ios
vendor: cisco model: series
vendor: cisco model: router

Trust: 5.25

Fetched: May 9, 2025, 9:11 a.m., Published: May 7, 2025, 3:52 p.m.
Vulnerabilities: access control vulnerability
Affected productsExternal IDs
vendor: cisco model: catalyst
Related entries in the VARIoT vulnerabilities database: VAR-202504-3437

Trust: 3.75

Fetched: May 9, 2025, 9:11 a.m., Published: -
Vulnerabilities: code execution, file upload vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2025-31324

Trust: 4.75

Fetched: May 9, 2025, 9:10 a.m., Published: May 7, 2025, 3:52 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: nx-os software
vendor: cisco model: ios xe
vendor: cisco model: nexus 3000
vendor: cisco model: ios xe software
vendor: cisco model: nx-os
vendor: cisco model: cisco ios xe
vendor: cisco model: nexus
vendor: cisco model: cisco nx-os
vendor: cisco model: cisco ios
vendor: cisco model: series
vendor: cisco model: series switches

Trust: 3.75

Fetched: May 9, 2025, 9:09 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco iox
vendor: cisco model: ic3000
vendor: cisco model: ios xe
vendor: cisco model: iox application
vendor: cisco model: industrial isrs
vendor: cisco model: ios xe software
vendor: cisco model: cisco iox application
vendor: cisco model: catalyst 9100
vendor: cisco model: access points
vendor: cisco model: catalyst
vendor: cisco model: cgr1000
vendor: cisco model: ir510 wpan
vendor: cisco model: routers
vendor: cisco model: cisco ios
vendor: cisco model: series
vendor: cisco model: router

Trust: 5.5

Fetched: May 9, 2025, 9:08 a.m., Published: April 30, 2025, 5:36 a.m.
Vulnerabilities: code execution, buffer overflow
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: macos
vendor: apple model: iphone
db: NVD ids: CVE-2025-24252, CVE-2025-24132, CVE-2025-24206

Trust: 4.75

Fetched: May 9, 2025, 9:07 a.m., Published: May 7, 2025, 3:53 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: nx-os software
vendor: cisco model: aireos
vendor: cisco model: ios xe
vendor: cisco model: catalyst 9800
vendor: cisco model: ios xe software
vendor: cisco model: ios xr
vendor: cisco model: 1100
vendor: cisco model: nx-os
vendor: cisco model: ios xr software
vendor: cisco model: identity services engine
vendor: cisco model: cisco ios xe
vendor: cisco model: access points
vendor: cisco model: series wireless controllers
vendor: cisco model: cisco identity services engine
vendor: cisco model: series routers
vendor: cisco model: catalyst
vendor: cisco model: wireless controller
vendor: cisco model: ios software
vendor: cisco model: routers
vendor: cisco model: cisco ios
vendor: cisco model: series
vendor: cisco model: router
vendor: cisco model: series switches