CVE-2024-22475
CVE-2024-22475
Cross-site request forgery vulnerability in multiple printers and scanners which implement Web Based Management provided by BROTHER INDUSTRIES, LTD. allows a remote unauthenticated attacker to perform unintended operations on the affected product. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:L
Affected products
BROTHER INDUSTRIES, LTD. · Multiple printers and scannersFUJIFILM Business Innovation Corp. · Multiple printers and scannersRICOH COMPANY, LTD. · Multiple printers and scannersToshiba Tec Corporation · Multiple printers and scannersWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://jvn.jp/en/jp/JVN82749078/https://support.brother.com/g/b/link.aspx?prod=group2&faqid=faqp00100601_000https://support.brother.com/g/b/link.aspx?prod=lmgroup1&faqid=faq00100823_000https://www.fujifilm.com/fbglobal/eng/company/news/notice/2024/0306_2_announce.htmlhttps://www.ricoh.com/products/security/vulnerabilities/vul?id=ricoh-2024-000002https://www.toshibatec.com/information/20240306_01.html