PT-2024-21675 · Toshiba · Toshiba Printers

Pierre Barre

·

Published

2024-06-13

·

Updated

2024-07-04

·

CVE-2024-27144

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Toshiba printers (affected versions not specified)
Description The issue allows unauthorized access and remote exploitation of Toshiba printers through the web interface without authentication, enabling an attacker to overwrite insecure files and potentially replace programs with malicious ones. This can be executed in combination with other vulnerabilities, making it difficult to exploit alone.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Default Permissions

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2024-27144

Affected Products

Toshiba Printers