Attacker Value
Unknown
0
CVE-2024-48870
0
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2024-48870
(Last updated November 06, 2024) ▾
MITRE ATT&CK
Log in to add MITRE ATT&CK tag
Add MITRE ATT&CK tactics and techniques that apply to this CVE.
MITRE ATT&CK
Select the MITRE ATT&CK Tactics that apply to this CVE
Collection
Select any Techniques used:
Command and Control
Select any Techniques used:
Credential Access
Select any Techniques used:
Defense Evasion
Select any Techniques used:
Discovery
Select any Techniques used:
Execution
Select any Techniques used:
Exfiltration
Select any Techniques used:
Impact
Select any Techniques used:
Initial Access
Select any Techniques used:
Lateral Movement
Select any Techniques used:
Persistence
Select any Techniques used:
Privilege Escalation
Select any Techniques used:
Topic Tags
Select the tags that apply to this CVE (Assessment added tags are disabled and cannot be removed)
What makes this of high-value to an attacker?
What makes this of low-value to an attacker?
Description
Sharp and Toshiba Tec MFPs improperly validate input data in URI data registration, resulting in a stored cross-site scripting vulnerability.
If crafted input is stored by an administrative user, malicious script may be executed on the web browsers of other victim users.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
Data provided by the National Vulnerability Database (NVD)
Base Score:
4.8 Medium
Impact Score:
2.7
Exploitability Score:
1.7
Attack Vector (AV):
Network
Attack Complexity (AC):
Low
Privileges Required (PR):
High
User Interaction (UI):
Required
Scope (S):
Changed
Confidentiality (C):
Low
Integrity (I):
Low
Availability (A):
None
General Information
Offensive Application
Unknown
Utility Class
Unknown
Ports
Unknown
OS
Unknown
Vulnerable Versions
e-STUDIO 908 T2.12.h3.00 and earlier versions
e-STUDIO 1058 T1.01.h4.00 and earlier versions
e-STUDIO 1208 T1.01.h4.00 and earlier versions
Sharp Digital Full-color MFPs and Monochrome MFPs see the information provided by Sharp Corporation
Prerequisites
Unknown
Discovered By
Unknown
PoC Author
Unknown
Metasploit Module
Unknown
Reporter
Unknown
Vendors
Products
- bp-30c25 firmware -,
- bp-30c25t firmware -,
- bp-30c25y firmware -,
- bp-30c25z firmware -,
- bp-30m28 firmware -,
- bp-30m28t firmware -,
- bp-30m31 firmware -,
- bp-30m31t firmware -,
- bp-30m35 firmware -,
- bp-30m35t firmware -,
- bp-50c26 firmware -,
- bp-50c31 firmware -,
- bp-50c36 firmware -,
- bp-50c45 firmware -,
- bp-50c55 firmware -,
- bp-50c65 firmware -,
- bp-50m26 firmware -,
- bp-50m31 firmware -,
- bp-50m36 firmware -,
- bp-50m45 firmware -,
- bp-50m50 firmware -,
- bp-50m55 firmware -,
- bp-55c26 firmware -,
- bp-60c31 firmware -,
- bp-60c36 firmware -,
- bp-60c45 firmware -,
- bp-70c31 firmware -,
- bp-70c36 firmware -,
- bp-70c45 firmware -,
- bp-70c55 firmware -,
- bp-70c65 firmware -,
- bp-70m31 firmware -,
- bp-70m36 firmware -,
- bp-70m45 firmware -,
- bp-70m55 firmware -,
- bp-70m65 firmware -,
- bp-70m75 firmware -,
- bp-70m90 firmware -,
- bp-90c70 firmware -,
- bp-90c80 firmware -,
- bp-b537wr firmware -,
- bp-b540wr firmware -,
- bp-b547wd firmware -,
- bp-b550wd firmware -,
- bp-c533wd firmware -,
- bp-c533wr firmware -,
- bp-c535wd firmware -,
- bp-c535wr firmware -,
- bp-c542wd firmware -,
- bp-c545wd firmware -,
- dx-2000u firmware -,
- dx-2500n firmware -,
- dx-c310 firmware -,
- dx-c311 firmware -,
- dx-c311j firmware -,
- dx-c381 firmware -,
- dx-c400 firmware -,
- dx-c401 firmware -,
- dx-c401 j firmware -,
- e-studio1058 firmware,
- e-studio1208 firmware,
- e-studio908 firmware,
- mx-1810u firmware -,
- mx-2010u firmware -,
- mx-2301n firmware -,
- mx-2310r firmware -,
- mx-2310u firmware -,
- mx-2314n firmware -,
- mx-2314nr firmware -,
- mx-2600g firmware -,
- mx-2600n firmware -,
- mx-2601n firmware -,
- mx-2610n firmware -,
- mx-2614n firmware -,
- mx-2615 a firmware -,
- mx-2615n firmware -,
- mx-2616n firmware -,
- mx-2630n firmware -,
- mx-2640n firmware -,
- mx-2640nr firmware -,
- mx-2651 firmware -,
- mx-3050n a firmware -,
- mx-3050n firmware -,
- mx-3050v a firmware -,
- mx-3050v firmware -,
- mx-3051 firmware -,
- mx-3060n firmware -,
- mx-3060v firmware -,
- mx-3061 firmware -,
- mx-3061s firmware -,
- mx-3070n a firmware -,
- mx-3070n firmware -,
- mx-3070v a firmware -,
- mx-3070v firmware -,
- mx-3071 firmware -,
- mx-3071s firmware -,
- mx-3100g firmware -,
- mx-3100n firmware -,
- mx-3101n firmware -,
- mx-3110n a firmware -,
- mx-3110n firmware -,
- mx-3111u firmware -,
- mx-3114n firmware -,
- mx-3115n firmware -,
- mx-3116n firmware -,
- mx-3140n a firmware -,
- mx-3140n firmware -,
- mx-3140nr firmware -,
- mx-3550n firmware -,
- mx-3550v firmware -,
- mx-3551 firmware -,
- mx-3560n firmware -,
- mx-3560v firmware -,
- mx-3561 firmware -,
- mx-3561s firmware -,
- mx-3570n firmware -,
- mx-3570v firmware -,
- mx-3571 firmware -,
- mx-3571s firmware -,
- mx-3610n firmware -,
- mx-3610nr firmware -,
- mx-3640n firmware -,
- mx-3640nr firmware -,
- mx-4050n firmware -,
- mx-4050v firmware -,
- mx-4051 firmware -,
- mx-4060n firmware -,
- mx-4060v firmware -,
- mx-4061 firmware -,
- mx-4061s firmware -,
- mx-4070n a firmware -,
- mx-4070n firmware -,
- mx-4070v a firmware -,
- mx-4070v firmware -,
- mx-4071 firmware -,
- mx-4071s firmware -,
- mx-4100n firmware -,
- mx-4101n firmware -,
- mx-4110n firmware -,
- mx-4111n firmware -,
- mx-4112n firmware -,
- mx-4140n a firmware -,
- mx-4140n firmware -,
- mx-4141n firmware -,
- mx-5000n firmware -,
- mx-5001n firmware -,
- mx-5050n firmware -,
- mx-5050v firmware -,
- mx-5051 firmware -,
- mx-5070n firmware -,
- mx-5070v firmware -,
- mx-5071 firmware -,
- mx-5071s firmware -,
- mx-5110n firmware -,
- mx-5111n firmware -,
- mx-5112n firmware -,
- mx-5140n firmware -,
- mx-5141n a firmware -,
- mx-5141n firmware -,
- mx-6050n firmware -,
- mx-6050v firmware -,
- mx-6051 firmware -,
- mx-6070n a firmware -,
- mx-6070n firmware -,
- mx-6070v a firmware -,
- mx-6070v firmware -,
- mx-6071 firmware -,
- mx-6071s firmware -,
- mx-6240n firmware -,
- mx-6500n firmware -,
- mx-6580n firmware -,
- mx-7040n firmware -,
- mx-7081 firmware -,
- mx-7090n firmware -,
- mx-7500n firmware -,
- mx-7580n firmware -,
- mx-8081 firmware -,
- mx-8090n firmware -,
- mx-b355w firmware -,
- mx-b355wt firmware -,
- mx-b355wz firmware -,
- mx-b356w firmware -,
- mx-b356wh firmware -,
- mx-b376w firmware -,
- mx-b376wh firmware -,
- mx-b380p firmware -,
- mx-b381 firmware -,
- mx-b382 firmware -,
- mx-b382p firmware -,
- mx-b382sc firmware -,
- mx-b400p firmware -,
- mx-b401 firmware -,
- mx-b402 firmware -,
- mx-b402p firmware -,
- mx-b402sc firmware -,
- mx-b455w firmware -,
- mx-b455wt firmware -,
- mx-b455wz firmware -,
- mx-b456w firmware -,
- mx-b456wh firmware -,
- mx-b476w firmware -,
- mx-b476wh firmware -,
- mx-c301 firmware -,
- mx-c301w firmware -,
- mx-c303 firmware -,
- mx-c303w firmware -,
- mx-c303wh firmware -,
- mx-c304 firmware -,
- mx-c304w firmware -,
- mx-c304wh firmware -,
- mx-c310 firmware -,
- mx-c311 firmware -,
- mx-c312 firmware -,
- mx-c380 firmware -,
- mx-c380p firmware -,
- mx-c381 firmware -,
- mx-c381b firmware -,
- mx-c382sc firmware -,
- mx-c382scb firmware -,
- mx-c400 firmware -,
- mx-c400p firmware -,
- mx-c401 firmware -,
- mx-c402sc firmware -,
- mx-m1054 firmware -,
- mx-m1055 firmware -,
- mx-m1056 firmware -,
- mx-m1204 firmware -,
- mx-m1205 firmware -,
- mx-m1206 firmware -,
- mx-m2630 a firmware -,
- mx-m2630 firmware -,
- mx-m264n firmware -,
- mx-m264nr firmware -,
- mx-m264nv firmware -,
- mx-m264u firmware -,
- mx-m2651 firmware -,
- mx-m265n firmware -,
- mx-m265ne firmware -,
- mx-m265nv firmware -,
- mx-m265u firmware -,
- mx-m265uv firmware -,
- mx-m265v firmware -,
- mx-m266n firmware -,
- mx-m266nv firmware -,
- mx-m283n firmware -,
- mx-m3050 a firmware -,
- mx-m3050 firmware -,
- mx-m3051 firmware -,
- mx-m3070 a firmware -,
- mx-m3070 firmware -,
- mx-m3071 firmware -,
- mx-m3071s firmware -,
- mx-m314n firmware -,
- mx-m314nr firmware -,
- mx-m314nv firmware -,
- mx-m314u firmware -,
- mx-m315n firmware -,
- mx-m315ne firmware -,
- mx-m315nv firmware -,
- mx-m315u firmware -,
- mx-m315uv firmware -,
- mx-m315v firmware -,
- mx-m316n firmware -,
- mx-m316nv firmware -,
- mx-m354n firmware -,
- mx-m354nr firmware -,
- mx-m354u firmware -,
- mx-m3550 firmware -,
- mx-m3551 firmware -,
- mx-m356n firmware -,
- mx-m356nv firmware -,
- mx-m356u firmware -,
- mx-m356uv firmware -,
- mx-m3570 firmware -,
- mx-m3571 firmware -,
- mx-m3571s firmware -,
- mx-m363n firmware -,
- mx-m363u firmware -,
- mx-m364n firmware -,
- mx-m365n a firmware -,
- mx-m365n firmware -,
- mx-m4050 firmware -,
- mx-m4051 firmware -,
- mx-m4070 a firmware -,
- mx-m4070 firmware -,
- mx-m4071 firmware -,
- mx-m4071s firmware -,
- mx-m453n firmware -,
- mx-m453u firmware -,
- mx-m464n firmware -,
- mx-m465n a firmware -,
- mx-m465n firmware -,
- mx-m503n firmware -,
- mx-m503u firmware -,
- mx-m5050 firmware -,
- mx-m5051 firmware -,
- mx-m5070 firmware -,
- mx-m5071 firmware -,
- mx-m5071s firmware -,
- mx-m564n a firmware -,
- mx-m564n firmware -,
- mx-m565n firmware -,
- mx-m6050 firmware -,
- mx-m6051 firmware -,
- mx-m6070 a firmware -,
- mx-m6070 firmware -,
- mx-m6071 firmware -,
- mx-m6071s firmware -,
- mx-m623n firmware -,
- mx-m623u firmware -,
- mx-m654n a firmware -,
- mx-m654n firmware -,
- mx-m6570 firmware -,
- mx-m753n firmware -,
- mx-m753u firmware -,
- mx-m754n a firmware -,
- mx-m754n firmware -,
- mx-m7570 firmware -,
- mx-m904 firmware -,
- mx-m905 firmware -
References
Additional Info
Authenticated
Unknown
Exploitable
Unknown
Reliability
Unknown
Stability
Unknown
Available Mitigations
Unknown
Shelf Life
Unknown
Userbase/Installbase
Unknown
Patch Effectiveness
Unknown
Rapid7
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: