Unknown
CVE-2022-41798
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)CVE-2022-41798
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Session information easily guessable vulnerability exists in Kyocera Document Solutions MFPs and printers, which may allow a network-adjacent attacker to log in to the product by spoofing a user with guessed session information. Affected products/versions are as follows: TASKalfa 7550ci/6550ci, TASKalfa 5550ci/4550ci/3550ci/3050ci, TASKalfa 255c/205c, TASKalfa 256ci/206ci, ECOSYS M6526cdn/M6526cidn, FS-C2126MFP/C2126MFP+/C2026MFP/C2026MFP+, TASKalfa 8000i/6500i, TASKalfa 5500i/4500i/3500i, TASKalfa 305/255, TASKalfa 306i/256i, LS-3140MFP/3140MFP+/3640MFP, ECOSYS M2535dn, LS-1135MFP/1035MFP, LS-C8650DN/C8600DN, ECOSYS P6026cdn, FS-C5250DN, LS-4300DN/4200DN/2100DN, ECOSYS P4040dn, ECOSYS P2135dn, and FS-1370DN.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- ecosys m2535dn firmware -,
- ecosys m6526cdn firmware -,
- ecosys m6526cidn firmware -,
- ecosys p2135dn firmware -,
- ecosys p4040dn firmware -,
- ecosys p6026cdn firmware -,
- fs-1370dn firmware -,
- fs-c2026mfp firmware -,
- fs-c2126mfp firmware -,
- fs-c2126mfp+ firmware -,
- fs-c5250dn firmware -,
- ls-1035mfp firmware -,
- ls-1135mfp firmware -,
- ls-2100dn firmware -,
- ls-3140mfp firmware -,
- ls-3140mfp+ firmware -,
- ls-3640mfp firmware -,
- ls-4200dn firmware -,
- ls-4300dn firmware -,
- ls-c8600dn firmware -,
- ls-c8650dn firmware -,
- taskalfa 205c firmware -,
- taskalfa 206ci firmware -,
- taskalfa 255 firmware -,
- taskalfa 255c firmware -,
- taskalfa 256ci firmware -,
- taskalfa 256i firmware -,
- taskalfa 305 firmware -,
- taskalfa 3050ci firmware -,
- taskalfa 306i firmware -,
- taskalfa 3500i firmware -,
- taskalfa 3550ci firmware -,
- taskalfa 4500i firmware -,
- taskalfa 4550ci firmware -,
- taskalfa 5500i firmware -,
- taskalfa 5550ci firmware -,
- taskalfa 6500i firmware -,
- taskalfa 6550ci firmware -,
- taskalfa 7550ci firmware -,
- taskalfa 8000i firmware -
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: