PT-2024-5333 · Brother · Brother Dcp-1610W+10

Published

2024-06-05

·

Updated

2024-06-05

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Brother HL-L2360D, DCP-1610W, DCP-L2550DW, HL-L2390DW, HL-L2395DW, MFC-J4620DW, MFC-J6945DW, MFC-L2710DN, MFC-L2710DW, MFC-L2770DW, MFC-L8690CDW, TD-2130N (affected versions not specified)
Description The issue is related to a URL redirection vulnerability in the firmware of Brother printers. It allows a remote attacker to redirect a user to an arbitrary URL by manipulating the loginurl parameter on the login page.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-05961

Affected Products

Brother Dcp-1610W
Brother Dcp-L2550Dw
Brother Hl-L2360D
Brother Hl-L2390Dw
Brother Hl-L2395Dw
Brother Mfc-J4620Dw
Brother Mfc-J6945Dw
Brother Mfc-L2710Dn
Brother Mfc-L2770Dw
Brother Mfc-L8690Cdw
Brother Td-2130N