VARIoT news about IoT security

Trust: 4.25

Fetched: Aug. 19, 2025, 10:17 a.m., Published: Aug. 6, 2025, 9:29 a.m.
Vulnerabilities: access control vulnerability, privilege escalation, improper access control
Affected productsExternal IDs
vendor: sonicwall model: sonicos
vendor: sonicwall model: remote access
vendor: sonicwall model: ssl-vpn
vendor: sonicwall model: sonicwall ssl-vpn
vendor: sonicwall model: sma 100
db: NVD ids: CVE-2024-40766

Trust: 4.25

Fetched: Aug. 19, 2025, 10:17 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: asa software

Trust: 4.5

Fetched: Aug. 17, 2025, 11:09 a.m., Published: Aug. 11, 2025, 1:36 p.m.
Vulnerabilities: code execution
Affected productsExternal IDs
vendor: apple model: ipad
vendor: apple model: webkit
vendor: apple model: ios beta
vendor: apple model: safari
vendor: apple model: tvos
vendor: apple model: iphone
vendor: apple model: software update
vendor: apple model: macos
vendor: apple model: watchos
vendor: apple model: icloud
vendor: google model: wifi
vendor: google model: chrome
vendor: google model: google chrome
db: NVD ids: CVE-2025-6558

Trust: 5.5

Fetched: Aug. 17, 2025, 11:09 a.m., Published: -
Vulnerabilities: code execution, command injection
Affected productsExternal IDs
vendor: trend micro model: security
vendor: trend micro model: trend micro security
vendor: trendmicro model: security
vendor: trendmicro model: trend micro security
vendor: trend model: security
vendor: trend model: trend micro security
db: NVD ids: CVE-2025-54948, CVE-2025-54987

Trust: 3.0

Fetched: Aug. 17, 2025, 11:08 a.m., Published: July 30, 2025, 12:45 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: ip phones

Trust: 5.0

Fetched: Aug. 17, 2025, 11:08 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: command injection
Affected productsExternal IDs
vendor: cisco model: asa software
vendor: cisco model: adaptive security appliance

Trust: 4.0

Fetched: Aug. 17, 2025, 11:08 a.m., Published: Aug. 1, 2025, midnight
Vulnerabilities: code execution, authentication bypass, authentication vulnerability
Affected productsExternal IDs
db: NVD ids: CVE-2025-7742

Trust: 3.5

Fetched: Aug. 17, 2025, 11:07 a.m., Published: Aug. 17, 5000, midnight
Vulnerabilities: -
Affected productsExternal IDs
vendor: rockwell automation model: studio 5000
vendor: rockwell automation model: studio 5000 logix designer
vendor: rockwell model: studio 5000
vendor: rockwell model: studio 5000 logix designer
db: NVD ids: CVE-2025-7971

Trust: 4.0

Fetched: Aug. 17, 2025, 11:07 a.m., Published: -
Vulnerabilities: code execution
Affected productsExternal IDs
db: NVD ids: CVE-2025-20265

Trust: 3.75

Fetched: Aug. 17, 2025, 11:06 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: firepower
vendor: cisco model: firepower management center
db: NVD ids: CVE-2025-20218

Trust: 3.75

Fetched: Aug. 17, 2025, 11:05 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: adaptive security appliance
vendor: cisco model: asa software

Trust: 4.5

Fetched: Aug. 17, 2025, 11:04 a.m., Published: -
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: firepower
vendor: cisco model: adaptive security appliance
vendor: cisco model: series
vendor: cisco model: firepower 2100
Related entries in the VARIoT vulnerabilities database: VAR-202508-0381

Trust: 5.5

Fetched: Aug. 17, 2025, 11:04 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: code execution, buffer overflow
Affected productsExternal IDs
vendor: linksys model: re6500
vendor: linksys model: re6300
db: NVD ids: CVE-2025-8817

Trust: 3.75

Fetched: Aug. 17, 2025, 11:03 a.m., Published: -
Vulnerabilities: -
Affected productsExternal IDs
vendor: google model: wifi
db: NVD ids: CVE-2025-38532

Trust: 4.75

Fetched: Aug. 17, 2025, 11:03 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: denial of service
Affected productsExternal IDs
vendor: cisco model: ios xe
vendor: cisco model: adaptive security appliance
vendor: cisco model: router
vendor: cisco model: nx-os
vendor: cisco model: ios software
vendor: cisco model: ios xr software
vendor: cisco model: cisco ios xe
vendor: cisco model: ios xr
vendor: cisco model: cisco ios
vendor: cisco model: asa software
vendor: cisco model: nx-os software
vendor: cisco model: ios xe software
db: NVD ids: CVE-2025-20252, CVE-2025-20239, CVE-2025-20224, CVE-2025-20225, CVE-2025-20254, CVE-2025-20253
Related entries in the VARIoT vulnerabilities database: VAR-202508-0363

Trust: 5.5

Fetched: Aug. 17, 2025, 11:02 a.m., Published: Nov. 30, 0001, midnight
Vulnerabilities: memory corruption, buffer overflow
Affected productsExternal IDs
vendor: linksys model: re6500
vendor: linksys model: re6300
db: NVD ids: CVE-2025-8826

Trust: 3.75

Fetched: Aug. 17, 2025, 11:02 a.m., Published: July 23, 2025, 11:37 a.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: cisco identity services engine
vendor: cisco model: identity services engine
db: NVD ids: CVE-2025-20281, CVE-2025-20337, CVE-2025-20282

Trust: 3.75

Fetched: Aug. 17, 2025, 11:02 a.m., Published: Aug. 12, 2025, 4:28 p.m.
Vulnerabilities: directory traversal, path traversal
Affected productsExternal IDs
db: NVD ids: CVE-2025-8088

Trust: 3.25

Fetched: Aug. 17, 2025, 11:01 a.m., Published: Aug. 14, 2025, 3:53 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: cisco model: asa software

Trust: 3.75

Fetched: Aug. 17, 2025, 11:01 a.m., Published: July 28, 2025, 9:30 p.m.
Vulnerabilities: -
Affected productsExternal IDs
vendor: palo alto networks model: palo alto networks globalprotect
vendor: palo alto networks model: networks
vendor: palo alto networks model: networks globalprotect
vendor: palo alto networks model: pan-os
vendor: palo_alto_networks model: palo alto networks globalprotect
vendor: palo_alto_networks model: networks
vendor: palo_alto_networks model: networks globalprotect
vendor: palo_alto_networks model: pan-os
vendor: palo model: palo alto networks globalprotect
vendor: palo model: networks
vendor: palo model: networks globalprotect
vendor: palo model: pan-os
db: NVD ids: CVE-2025-2179