VARIoT news about IoT security

Trust: 4.75

Fetched: July 2, 2025, 9:16 a.m., Published: -
Vulnerabilities: default administrator password, default password, information leakage...
Affected productsExternal IDs
db: NVD ids: CVE-2024-51981, CVE-2024-51978, CVE-2024-51982, CVE-2024-51977, CVE-2024-51984, CVE-2024-51983, CVE-2024-51979, CVE-2024-51980

Trust: 3.75

Fetched: July 2, 2025, 9:16 a.m., Published: June 25, 2025, 8:15 a.m.
Vulnerabilities: default administrator password, password disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2024-51981, CVE-2024-51978, CVE-2024-51982, CVE-2024-51977, CVE-2024-51984, CVE-2024-51983, CVE-2024-51979, CVE-2024-51980

Trust: 4.25

Fetched: July 2, 2025, 9:11 a.m., Published: July 1, 2025, 1:02 p.m.
Vulnerabilities: default password
Affected productsExternal IDs

Trust: 4.75

Fetched: July 2, 2025, 9:10 a.m., Published: June 25, 2025, 3:12 p.m.
Vulnerabilities: authentication bypass, default administrator password, default password...
Affected productsExternal IDs
db: NVD ids: CVE-2024-51981, CVE-2024-51978, CVE-2024-51982, CVE-2024-51977, CVE-2024-51984, CVE-2024-51983, CVE-2024-51979, CVE-2024-51980

Trust: 3.0

Fetched: July 2, 2025, 9:09 a.m., Published: July 1, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: android

Trust: 3.0

Fetched: July 1, 2025, 9:43 a.m., Published: June 25, 2025, 3:43 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs

Trust: 3.25

Fetched: July 1, 2025, 9:42 a.m., Published: July 1, 2025, midnight
Vulnerabilities: code execution, session hijacking
Affected productsExternal IDs
vendor: palo alto networks model: networks
vendor: hikvision model: hikvision
vendor: cisco model: nexus
vendor: palo model: networks
vendor: sony model: camera
vendor: google model: chrome
vendor: google model: nexus
vendor: apple model: safari
vendor: apple model: macos

Trust: 3.25

Fetched: July 1, 2025, 9:42 a.m., Published: -
Vulnerabilities: configuration error
Affected productsExternal IDs

Trust: 5.25

Fetched: July 1, 2025, 9:37 a.m., Published: July 2, 2025, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-49144

Trust: 5.0

Fetched: July 1, 2025, 9:36 a.m., Published: July 29, 2025, midnight
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-20702

Trust: 3.25

Fetched: July 1, 2025, 9:31 a.m., Published: -
Vulnerabilities: configuration error
Affected productsExternal IDs

Trust: 3.75

Fetched: July 1, 2025, 9:30 a.m., Published: -
Vulnerabilities: default password, denial of service
Affected productsExternal IDs
db: NVD ids: CVE-2024-51978

Trust: 4.0

Fetched: July 1, 2025, 9:29 a.m., Published: June 28, 2025, 7:24 a.m.
Vulnerabilities: resource exhaustion
Affected productsExternal IDs
db: NVD ids: CVE-2002-20001

Trust: 5.25

Fetched: July 1, 2025, 9:29 a.m., Published: June 27, 2025, midnight
Vulnerabilities: code execution, request forgery, cross-site request forgery
Affected productsExternal IDs
vendor: delegate model: delegate
vendor: node.js model: node.js
db: NVD ids: CVE-2025-49596

Trust: 3.25

Fetched: July 1, 2025, 9:23 a.m., Published: -
Vulnerabilities: configuration error
Affected productsExternal IDs

Trust: 3.0

Fetched: July 1, 2025, 9:23 a.m., Published: June 25, 2025, 3:58 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: cisco identity services engine
vendor: cisco model: identity services engine

Trust: 3.0

Fetched: July 1, 2025, 9:18 a.m., Published: July 1, 2025, 3:20 a.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-51981, CVE-2024-51983, CVE-2024-51979, CVE-2024-51982, CVE-2024-51977, CVE-2024-51978, CVE-2024-51984, CVE-2024-51980

Trust: 5.0

Fetched: July 1, 2025, 9:16 a.m., Published: July 9, 2025, midnight
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2024-51978

Trust: 4.5

Fetched: July 1, 2025, 9:16 a.m., Published: June 26, 2025, 5:14 p.m.
Vulnerabilities: directory traversal, code execution
Affected productsExternal IDs
vendor: rarlab model: winrar
vendor: trend micro model: security
vendor: trend model: security
db: NVD ids: CVE-2025-6218
Related entries in the VARIoT vulnerabilities database: VAR-202108-1057

Trust: 4.5

Fetched: July 1, 2025, 9:15 a.m., Published: July 11, 2025, midnight
Vulnerabilities: integer overflow
Affected productsExternal IDs
vendor: essential model: phone
vendor: trend model: security
vendor: trend model: antivirus
vendor: google model: android
db: NVD ids: CVE-2021-30860