VARIoT news about IoT security

Trust: 4.25

Fetched: July 18, 2025, 9:42 a.m., Published: July 17, 2025, 7:13 a.m.
Vulnerabilities: code execution, privilege escalation
Affected productsExternal IDs
vendor: lenovo model: system
vendor: lenovo model: thinkpad
db: NVD ids: CVE-2025-6230, CVE-2025-6232, CVE-2025-6231

Trust: 3.5

Fetched: July 18, 2025, 9:41 a.m., Published: July 15, 2025, 5:50 a.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: checkpoint model: endpoint security
vendor: trend model: security

Trust: 3.75

Fetched: July 18, 2025, 9:40 a.m., Published: July 10, 2025, 12:36 p.m.
Vulnerabilities: command injection, information leakage, os command injection
Affected productsExternal IDs
db: NVD ids: CVE-2025-6243, CVE-2025-44963, CVE-2025-44954, CVE-2025-44955, CVE-2025-44961, CVE-2025-44957, CVE-2025-44960, CVE-2025-44962, CVE-2025-44958

Trust: 3.0

Fetched: July 18, 2025, 9:30 a.m., Published: May 18, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: citrix model: netscaler
vendor: citrix model: gateway

Trust: 4.5

Fetched: July 18, 2025, 9:28 a.m., Published: July 17, 2025, 7:30 a.m.
Vulnerabilities: path traversal, code execution
Affected productsExternal IDs
vendor: sonicwall model: secure mobile access
vendor: sonicwall model: switch
db: NVD ids: CVE-2024-38475

Trust: 5.75

Fetched: July 18, 2025, 9:27 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: cisco model: cisco identity services engine
vendor: cisco model: identity services engine
db: NVD ids: CVE-2025-20282, CVE-2025-20281

Trust: 4.5

Fetched: July 18, 2025, 9:27 a.m., Published: June 27, 2025, 10:15 a.m.
Vulnerabilities: session hijacking, access control issue, denial of service
Affected productsExternal IDs
vendor: citrix model: netscaler adc
vendor: citrix model: netscaler
vendor: citrix model: netscaler gateway
vendor: citrix model: gateway
db: NVD ids: CVE-2025-6543, CVE-2023-4966, CVE-2025-5349, CVE-2025-5777

Trust: 3.25

Fetched: July 18, 2025, 9:27 a.m., Published: July 18, 2025, 12:36 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: ubiquiti model: unifi

Trust: 5.0

Fetched: July 18, 2025, 9:26 a.m., Published: July 16, 2025, 3:57 p.m.
Vulnerabilities: sql injection
Affected productsExternal IDs
vendor: cisco model: prime infrastructure
vendor: cisco model: cisco prime infrastructure
vendor: cisco model: evolved programmable network manager

Trust: 3.25

Fetched: July 18, 2025, 9:24 a.m., Published: June 25, 2025, 7:03 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2024-8270
Related entries in the VARIoT vulnerabilities database: VAR-202507-0373

Trust: 4.75

Fetched: July 18, 2025, 9:23 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: buffer overflow, code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-7420
Related entries in the VARIoT vulnerabilities database: VAR-202112-0389, VAR-202505-1415, VAR-202109-0375

Trust: 4.5

Fetched: July 18, 2025, 9:21 a.m., Published: July 16, 2025, 4:52 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: sonicwall model: secure mobile access
vendor: sonicwall model: ssl vpn
vendor: sonicwall model: sma 100
db: NVD ids: CVE-2024-38475, CVE-2021-20039, CVE-2025-32819, CVE-2021-20035

Trust: 3.25

Fetched: July 18, 2025, 9:21 a.m., Published: July 17, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: sonicwall model: sma 100

Trust: 4.5

Fetched: July 18, 2025, 9:15 a.m., Published: July 16, 2025, 3 p.m.
Vulnerabilities: access control vulnerability, code execution, privilege escalation
Affected productsExternal IDs
vendor: mesh model: mesh
vendor: netgear model: router
vendor: netgear model: netgear router
vendor: netgear model: jgs516pe
vendor: netgear model: multiple routers
vendor: netgear model: dgn2200
vendor: cisco model: router
vendor: cisco model: soho
vendor: cisco model: routers
vendor: cisco model: series
vendor: sophos model: mobile
db: NVD ids: CVE-2016-15552022, CVE-2017-63342022, CVE-2017-74942023, CVE-2017-60772022, CVE-2020-269192021, CVE-2016-62772022, CVE-2017-55212022, CVE-2016-101742022, CVE-2017-68622022
Related entries in the VARIoT vulnerabilities database: VAR-202505-1415, VAR-202109-0375, VAR-202112-0361, VAR-202112-0389

Trust: 4.5

Fetched: July 18, 2025, 9:14 a.m., Published: July 16, 2025, 8:29 p.m.
Vulnerabilities: memory corruption, path traversal, code execution
Affected productsExternal IDs
vendor: sonicwall model: secure mobile access
vendor: sonicwall model: sma 100
db: NVD ids: CVE-2025-32819, CVE-2021-20035, CVE-2024-38475, CVE-2021-20038, CVE-2021-20039

Trust: 5.0

Fetched: July 18, 2025, 9:13 a.m., Published: July 16, 2025, 3:57 p.m.
Vulnerabilities: request forgery
Affected productsExternal IDs
vendor: cisco model: unified intelligence center
vendor: cisco model: cisco unified intelligence center

Trust: 4.5

Fetched: July 18, 2025, 9:11 a.m., Published: Jan. 18, 2025, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: trend model: security
vendor: trend model: antivirus

Trust: 5.75

Fetched: July 18, 2025, 9:11 a.m., Published: July 16, 2025, 3:57 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: cisco model: cisco identity services engine
vendor: cisco model: identity services engine
db: NVD ids: CVE-2025-20337

Trust: 3.0

Fetched: July 18, 2025, 9:10 a.m., Published: July 18, 2025, midnight
Vulnerabilities: -

Trust: 3.75

Fetched: July 18, 2025, 9:09 a.m., Published: July 16, 2025, 3:57 p.m.
Vulnerabilities: file upload vulnerability
Affected productsExternal IDs
vendor: cisco model: unified intelligence center
vendor: cisco model: cisco unified intelligence center