NA - CVE-2024-27159 - All the Toshiba printers contain a shell script...
All the Toshiba printers contain a shell script using the same hardcoded key to encrypt logs. An attacker can decrypt the encrypted files using the hardcoded key. This vulnerability can be executed...
NA - CVE-2024-27160 - All the Toshiba printers contain a shell script...
All the Toshiba printers contain a shell script using the same hardcoded key to encrypt logs. An attacker can decrypt the encrypted files using the hardcoded key. This vulnerability can be executed...
NA - CVE-2024-27161 - all the Toshiba printers have programs...
all the Toshiba printers have programs containing a hardcoded key used to encrypt files. An attacker can decrypt the encrypted files using the hardcoded key. Insecure algorithm is used for the...
NA - CVE-2024-27162 - Toshiba printers provide a web interface that...
Toshiba printers provide a web interface that will load the JavaScript file. The file contains insecure codes vulnerable to XSS and is loaded inside all the webpages provided by the printer. An...
NA - CVE-2024-27163 - Toshiba printers will display the password of...
Toshiba printers will display the password of the admin user in clear-text and additional passwords when sending 2 specific HTTP requests to the internal API. An attacker stealing the cookie of an...
NA - CVE-2024-27165 - Toshiba printers contain a suidperl binary and...
Toshiba printers contain a suidperl binary and it has a Local Privilege Escalation vulnerability. A local attacker can get root privileges. As for the affected products/models/versions, see the...
NA - CVE-2024-27166 - Coredump binaries in Toshiba printers have...
Coredump binaries in Toshiba printers have incorrect permissions. A local attacker can steal confidential information. As for the affected products/models/versions, see the reference URL.
NA - CVE-2024-27167 - Toshiba printers use Sendmail to send emails to...
Toshiba printers use Sendmail to send emails to recipients. Sendmail is used with several insecure directories. A local attacker can inject a malicious Sendmail configuration file. As for the...