VARIoT news about IoT security

Trust: 5.0

Fetched: Aug. 20, 2025, 11:09 a.m., Published: -
Vulnerabilities: improper validation, request forgery
Affected productsExternal IDs
db: NVD ids: CVE-2025-20148

Trust: 4.75

Fetched: Aug. 20, 2025, 11:08 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: asa software
vendor: cisco model: firepower
vendor: cisco model: adaptive security appliance

Trust: 4.25

Fetched: Aug. 20, 2025, 11:08 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: asa software
db: NVD ids: CVE-2025-20133

Trust: 3.0

Fetched: Aug. 20, 2025, 11:07 a.m., Published: Aug. 19, 2025, 5:15 p.m.
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-38592

Trust: 4.5

Fetched: Aug. 20, 2025, 11:06 a.m., Published: Aug. 4, 2025, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense software
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: adaptive security appliance
vendor: cisco model: cisco firepower threat defense software
vendor: cisco model: firepower threat defense
db: NVD ids: CVE-2025-20134

Trust: 3.25

Fetched: Aug. 20, 2025, 11:05 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-38576

Trust: 4.5

Fetched: Aug. 20, 2025, 11:04 a.m., Published: Aug. 4, 2025, midnight
Vulnerabilities: buffer overflow, denial of service
Affected productsExternal IDs
vendor: cisco model: firepower threat defense
vendor: cisco model: cisco firepower threat defense software
vendor: cisco model: firepower threat defense software
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: cisco adaptive security appliance software
vendor: cisco model: adaptive security appliance software
vendor: cisco model: firepower
vendor: cisco model: adaptive security appliance
db: NVD ids: CVE-2025-20222

Trust: 3.75

Fetched: Aug. 20, 2025, 11:03 a.m., Published: Aug. 7, 2025, 8:06 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home

Trust: 4.75

Fetched: Aug. 20, 2025, 10:50 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: series
vendor: cisco model: firepower
vendor: cisco model: firepower 2100
vendor: cisco model: adaptive security appliance
vendor: cisco model: asa software

Trust: 5.5

Fetched: Aug. 20, 2025, 10:50 a.m., Published: Aug. 14, 2025, 4:10 p.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
vendor: siemens model: ruggedcom rox mx5000
vendor: siemens model: ruggedcom rox rx1500
vendor: siemens model: ruggedcom rox rx5000
vendor: siemens model: ruggedcom
vendor: siemens model: ruggedcom rox rx1510
vendor: siemens model: rox ii
vendor: siemens model: ruggedcom rox rx1536
vendor: siemens model: ruggedcom rox rx1501
vendor: siemens model: ruggedcom rox rx1524
vendor: siemens model: ruggedcom rox rx1400
vendor: siemens model: ruggedcom rox rx1512
vendor: siemens model: ruggedcom rox rx1511
db: NVD ids: CVE-2025-40761

Trust: 4.25

Fetched: Aug. 20, 2025, 10:49 a.m., Published: Aug. 16, 2025, 11:22 a.m.
Vulnerabilities: resource exhaustion
Affected productsExternal IDs
db: NVD ids: CVE-2025-38542

Trust: 4.25

Fetched: Aug. 20, 2025, 10:49 a.m., Published: Aug. 20, 2025, midnight
Vulnerabilities: denial of service, input validation vulnerability
Affected productsExternal IDs
vendor: schneider model: m580
vendor: schneider model: bmxnoe0110
vendor: schneider model: modicon m340
vendor: schneider model: m340
vendor: schneider model: bmxnoc0401
vendor: schneider model: bmxnoe0100
vendor: schneider model: bmxnor0200h
vendor: schneider model: modbus
vendor: schneider-electric model: m580
vendor: schneider-electric model: bmxnoe0110
vendor: schneider-electric model: modicon m340
vendor: schneider-electric model: m340
vendor: schneider-electric model: bmxnoc0401
vendor: schneider-electric model: bmxnoe0100
vendor: schneider-electric model: bmxnor0200h
vendor: schneider-electric model: modbus
vendor: schneider electric model: m580
vendor: schneider electric model: bmxnoe0110
vendor: schneider electric model: modicon m340
vendor: schneider electric model: m340
vendor: schneider electric model: bmxnoc0401
vendor: schneider electric model: bmxnoe0100
vendor: schneider electric model: bmxnor0200h
vendor: schneider electric model: modbus
db: NVD ids: CVE-2025-6625

Trust: 5.0

Fetched: Aug. 20, 2025, 10:49 a.m., Published: Aug. 19, 2025, 9:15 a.m.
Vulnerabilities: authentication bypass
Affected productsExternal IDs
db: NVD ids: CVE-2025-41689

Trust: 3.5

Fetched: Aug. 20, 2025, 10:48 a.m., Published: Aug. 18, 2025, 11:21 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: citrix model: netscaler adc
vendor: citrix model: netscaler gateway
vendor: citrix model: netscaler
vendor: citrix model: gateway
db: NVD ids: CVE-2025-5777, CVE-2025-6543
Related entries in the VARIoT vulnerabilities database: VAR-201904-1560, VAR-201904-1552

Trust: 4.25

Fetched: Aug. 20, 2025, 10:47 a.m., Published: Aug. 11, 2025, 10:56 a.m.
Vulnerabilities: authentication attack, timing attack
Affected productsExternal IDs
vendor: cisco model: network access control
vendor: cisco model: access points
vendor: mesh model: mesh
db: NVD ids: CVE-2019-9495, CVE-2019-9494, CVE-2019-13377, CVE-2019-13456

Trust: 3.5

Fetched: Aug. 20, 2025, 10:46 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: asa software
vendor: snort model: snort

Trust: 4.25

Fetched: Aug. 20, 2025, 10:45 a.m., Published: -
Vulnerabilities: access control flaw, improper access control
Affected productsExternal IDs
vendor: filezilla model: server
vendor: sonicwall model: ssl vpn
vendor: sonicwall model: sonicos
db: NVD ids: CVE-2024-40766
Related entries in the VARIoT vulnerabilities database: VAR-202304-1067

Trust: 4.5

Fetched: Aug. 20, 2025, 10:45 a.m., Published: Aug. 15, 2025, 11:30 a.m.
Vulnerabilities: command injection, code execution
Affected productsExternal IDs
vendor: cisco model: series
vendor: cisco model: small business
vendor: cisco model: small business rv series routers
vendor: cisco model: cisco identity services engine
vendor: cisco model: identity services engine
vendor: cisco model: small business rv
vendor: cisco model: cisco small business
vendor: cisco model: routers
vendor: cisco model: series routers
db: NVD ids: CVE-2025-20265, CVE-2023-20118

Trust: 4.25

Fetched: Aug. 19, 2025, 10:49 a.m., Published: Aug. 6, 2025, 8:19 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: home

Trust: 4.0

Fetched: Aug. 19, 2025, 10:48 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: dell model: latitude
db: NVD ids: CVE-2025-25215, CVE-2025-25050, CVE-2025-24311, CVE-2025-24922, CVE-2025-24919