PT-2024-21675 · Toshiba · Toshiba Printers
Pierre Barre
·
Published
2024-06-13
·
Updated
2024-07-04
·
CVE-2024-27144
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Toshiba printers (affected versions not specified)
Description
The issue allows unauthorized access and remote exploitation of Toshiba printers through the web interface without authentication, enabling an attacker to overwrite insecure files and potentially replace programs with malicious ones. This can be executed in combination with other vulnerabilities, making it difficult to exploit alone.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Incorrect Default Permissions
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Toshiba Printers