Show filters
545 Total Results
Displaying 61-70 of 545
Sort by:
Attacker Value
Unknown

CVE-2024-27161

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
all the Toshiba printers have programs containing a hardcoded key used to encrypt files. An attacker can decrypt the encrypted files using the hardcoded key. Insecure algorithm is used for the encryption. This vulnerability can be executed in combination with other vulnerabilities and difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the "Base Score" of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point. https://www.toshibatec.com/contacts/products/ As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27160

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
All the Toshiba printers contain a shell script using the same hardcoded key to encrypt logs. An attacker can decrypt the encrypted files using the hardcoded key. This vulnerability can be executed in combination with other vulnerabilities and difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the "Base Score" of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point. https://www.toshibatec.com/contacts/products/ As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27159

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
All the Toshiba printers contain a shell script using the same hardcoded key to encrypt logs. An attacker can decrypt the encrypted files using the hardcoded key. This vulnerability can be executed in combination with other vulnerabilities and difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the "Base Score" of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point. https://www.toshibatec.com/contacts/products/ As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27158

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
All the Toshiba printers share the same hardcoded root password. As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27157

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
The sessions are stored in clear-text logs. An attacker can retrieve authentication sessions. A remote attacker can retrieve the credentials and bypass the authentication mechanism. As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27156

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
The session cookies, used for authentication, are stored in clear-text logs. An attacker can retrieve authentication sessions. A remote attacker can retrieve the credentials and bypass the authentication mechanism. As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27155

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any Toshiba printer. The programs can be replaced by malicious programs by any local or remote attacker. As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27154

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
Passwords are stored in clear-text logs. An attacker can retrieve passwords. As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27153

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any Toshiba printer. As for the affected products/models/versions, see the reference URL.
0
Attacker Value
Unknown

CVE-2024-27152

Disclosure Date: June 14, 2024 (last updated June 14, 2024)
The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any Toshiba printer. As for the affected products/models/versions, see the reference URL.
0