VARIoT news about IoT security

Trust: 5.25

Fetched: Aug. 19, 2025, 10:48 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: privilege escalation
Affected productsExternal IDs
db: NVD ids: CVE-2025-48799

Trust: 4.75

Fetched: Aug. 19, 2025, 10:47 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: ios xe software
vendor: cisco model: router
vendor: cisco model: asa software
vendor: cisco model: nx-os software
vendor: cisco model: nx-os
vendor: cisco model: ios software
vendor: cisco model: ios xe
vendor: cisco model: ios xr software
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xr
vendor: cisco model: cisco ios
vendor: cisco model: adaptive security appliance
db: NVD ids: CVE-2025-20254, CVE-2025-20224, CVE-2025-20225, CVE-2025-20252, CVE-2025-20239, CVE-2025-20253

Trust: 4.25

Fetched: Aug. 19, 2025, 10:45 a.m., Published: Aug. 19, 2017, midnight
Vulnerabilities: default credentials, privilege escalation
Affected productsExternal IDs
vendor: cisco model: technical support

Trust: 3.0

Fetched: Aug. 19, 2025, 10:45 a.m., Published: July 29, 2025, 6:07 a.m.
Vulnerabilities: -
Affected productsExternal IDs

Trust: 5.0

Fetched: Aug. 19, 2025, 10:45 a.m., Published: Jan. 19, 7690, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: canonical model: ubuntu
db: NVD ids: CVE-2025-50106, CVE-2025-50059, CVE-2025-30749, CVE-2025-30754

Trust: 5.25

Fetched: Aug. 19, 2025, 10:39 a.m., Published: Aug. 14, 2025, 4:08 p.m.
Vulnerabilities: privilege escalation, session hijacking
Affected productsExternal IDs
vendor: sonicwall model: sonicos
vendor: sonicwall model: remote access
vendor: sonicwall model: ssl-vpn
vendor: sonicwall model: ssl vpn
vendor: sonicwall model: sma 100
db: NVD ids: CVE-2024-40766
Related entries in the VARIoT vulnerabilities database: VAR-202508-2136

Trust: 3.25

Fetched: Aug. 19, 2025, 10:39 a.m., Published: -
Vulnerabilities: buffer overflow
Affected productsExternal IDs
db: NVD ids: CVE-2025-55588

Trust: 3.75

Fetched: Aug. 19, 2025, 10:36 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: firepower threat defense
vendor: cisco model: adaptive security appliance software
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: cisco adaptive security appliance software
vendor: cisco model: firepower threat defense software
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower
db: NVD ids: CVE-2025-20222

Trust: 3.25

Fetched: Aug. 19, 2025, 10:35 a.m., Published: March 19, 7681, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: canonical model: ubuntu

Trust: 3.25

Fetched: Aug. 19, 2025, 10:35 a.m., Published: -
Vulnerabilities: configuration error
Affected productsExternal IDs

Trust: 4.0

Fetched: Aug. 19, 2025, 10:35 a.m., Published: Aug. 1, 2025, midnight
Vulnerabilities: -
Affected productsExternal IDs
db: NVD ids: CVE-2025-47872, CVE-2025-53520, CVE-2025-52586, CVE-2025-46414

Trust: 4.0

Fetched: Aug. 19, 2025, 10:34 a.m., Published: Aug. 1, 2025, midnight
Vulnerabilities: information disclosure
Affected productsExternal IDs
db: NVD ids: CVE-2025-8393

Trust: 4.5

Fetched: Aug. 19, 2025, 10:32 a.m., Published: Aug. 4, 2025, midnight
Vulnerabilities: denial of service, improper validation
Affected productsExternal IDs
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: cisco firepower threat defense software
vendor: cisco model: firepower threat defense software
vendor: cisco model: adaptive security appliance
db: NVD ids: CVE-2025-20251

Trust: 3.75

Fetched: Aug. 19, 2025, 10:26 a.m., Published: July 30, 2025, 4:56 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: apple model: safari
vendor: apple model: software update
vendor: apple model: watchos
vendor: apple model: tvos
vendor: apple model: webkit
vendor: apple model: macos
vendor: apple model: ipad
vendor: apple model: ipad air
vendor: apple model: iphone
db: NVD ids: CVE-2025-43227, CVE-2025-43228, CVE-2025-31229, CVE-2025-43217

Trust: 4.5

Fetched: Aug. 19, 2025, 10:20 a.m., Published: Aug. 4, 2025, midnight
Vulnerabilities: improper access control, control bypass
Affected productsExternal IDs
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: cisco firepower threat defense software
vendor: cisco model: firepower threat defense software
db: NVD ids: CVE-2025-20219

Trust: 4.5

Fetched: Aug. 19, 2025, 10:18 a.m., Published: Aug. 2, 2025, midnight
Vulnerabilities: denial of service, memory leak
Affected productsExternal IDs
vendor: cisco model: adaptive security appliance
vendor: cisco model: firepower
vendor: cisco model: firepower threat defense
vendor: cisco model: cisco adaptive security appliance
vendor: cisco model: cisco firepower threat defense software
vendor: cisco model: firepower threat defense software
db: NVD ids: CVE-2025-20252

Trust: 5.75

Fetched: Aug. 19, 2025, 10:17 a.m., Published: Aug. 14, 2025, midnight
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: cisco ios
vendor: cisco model: ios xe
vendor: cisco model: cisco ios xe
vendor: cisco model: ios software
vendor: cisco model: ios xe software
vendor: cisco model: asa software
db: NVD ids: CVE-2025-20253, CVE-2023-20109, CVE-2025-20182

Trust: 4.25

Fetched: Aug. 19, 2025, 10:17 a.m., Published: Aug. 6, 2025, 9:29 a.m.
Vulnerabilities: access control vulnerability, privilege escalation, improper access control
Affected productsExternal IDs
vendor: sonicwall model: sonicos
vendor: sonicwall model: remote access
vendor: sonicwall model: ssl-vpn
vendor: sonicwall model: sonicwall ssl-vpn
vendor: sonicwall model: sma 100
db: NVD ids: CVE-2024-40766

Trust: 4.25

Fetched: Aug. 19, 2025, 10:17 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: asa software

Trust: 4.5

Fetched: Aug. 17, 2025, 11:09 a.m., Published: Aug. 11, 2025, 1:36 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: webkit
vendor: apple model: ios beta
vendor: apple model: safari
vendor: apple model: tvos
vendor: apple model: iphone
vendor: apple model: software update
vendor: apple model: macos
vendor: apple model: watchos
vendor: apple model: icloud
vendor: google model: wifi
vendor: google model: chrome
vendor: google model: google chrome
db: NVD ids: CVE-2025-6558