|
223231
|
9.8 |
CRITICAL
Network
|
kyocera
|
ecosys_m5526cdw_firmware
|
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by a buffer overflow vulnerability in the URI paths of the web application that would allow an unauthenticated attac…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-13197
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223232
|
8.8 |
HIGH
Network
|
kyocera
|
ecosys_m5526cdw_firmware
|
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by a buffer overflow vulnerability in the arg4 and arg9 parameters of several functionalities of the web application…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-13196
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223233
|
7.5 |
HIGH
Network
|
kyocera
|
ecosys_m5526cdw_firmware
|
The web application of some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) was vulnerable to path traversal, allowing an unauthenticated user to retrieve arbitrary files, or check if…
|
CWE-22
Path Traversal
|
CVE-2019-13195
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223234
|
9.8 |
CRITICAL
Network
|
xerox
|
phaser_3320_firmware
|
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the Authentication Cookie of the web application that would allow an attacker to execu…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-13172
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223235
|
9.8 |
CRITICAL
Network
|
xerox
|
phaser_3320_firmware
|
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by one or more stack-based buffer overflow vulnerabilities in the Google Cloud Print implementation that would allow an unau…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13171
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223236
|
6.5 |
MEDIUM
Network
|
xerox
|
phaser_3320_firmware
|
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) did not implement any mechanism to avoid CSRF attacks. Successful exploitation of this vulnerability can lead to the takeover of a local a…
|
CWE-352
Origin Validation Error
|
CVE-2019-13170
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223237
|
9.8 |
CRITICAL
Network
|
xerox
|
phaser_3320_firmware
|
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the Content-Type HTTP Header of the web application that would allow an attacker to ex…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-13169
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223238
|
9.8 |
CRITICAL
Network
|
xerox
|
phaser_3320_firmware
|
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the attributes parser of the IPP service. This would allow an unauthenticated attacker…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-13168
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223239
|
6.1 |
MEDIUM
Network
|
xerox
|
phaser_3320_firmware
|
Multiple Stored XSS vulnerabilities were found in the Xerox Web Application, used by the Phaser 3320 V53.006.16.000 and other printers. Successful exploitation of this vulnerability can lead to sessi…
|
CWE-79
Cross-site Scripting
|
CVE-2019-13167
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223240
|
7.5 |
HIGH
Network
|
xerox
|
phaser_3320_firmware
|
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) did not implement account lockout. Local account credentials may be extracted from the device via brute force guessing attacks.
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2019-13166
|
2024-11-21 13:24 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|