Path traversal vulnerability in the web server of the Toshiba printer enables attacker to overwrite orginal files or add new ones to the printer. As for the affected products/models/versions, see the reference URL.
Fixes

Solution

This issue is fixed in the version released on June 14, 2024 and all later versions.


Workaround

When connecting the MFPs and printers with an outer network such as the Internet, only operate it in a network environment protected by a firewall, etc. to prevent information from being leaked due to incorrect settings or avoid illegal access by unauthorized users.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Toshiba

Published:

Updated: 2024-08-01T20:12:07.639Z

Reserved: 2024-04-09T00:59:38.974Z

Link: CVE-2024-3497

cve-icon Vulnrichment

Updated: 2024-08-01T20:12:07.639Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-14T05:15:48.953

Modified: 2024-11-21T09:29:43.880

Link: CVE-2024-3497

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.