The web interface of the affected devices process some crafted HTTP requests improperly, leading to a device crash. More precisely, a crafted parameter to billcodedef_sub_sel.html is not processed properly and device-crash happens. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].
History

Tue, 26 Nov 2024 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Sharp
Sharp bp-b537wr
Sharp bp-b540wr
Sharp bp-b547wd
Sharp bp-b550wd
Sharp mx-b355w
Sharp mx-b355wt
Sharp mx-b355wz
Sharp mx-b455w
Sharp mx-b455wt
Sharp mx-b455wz
Sharp mx-m2630
Sharp mx-m3050
Sharp mx-m3070
Sharp mx-m3550
Sharp mx-m3570
Sharp mx-m4050
Sharp mx-m4070
Sharp mx-m5050
Sharp mx-m5070
Sharp mx-m6050
Sharp mx-m6070
Sharp mx-m905
CPEs cpe:2.3:h:sharp:bp-b537wr:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:bp-b540wr:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:bp-b547wd:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:bp-b550wd:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-b355w:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-b355wt:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-b355wz:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-b455w:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-b455wt:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-b455wz:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m2630:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m3050:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m3070:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m3550:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m3570:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m4050:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m4070:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m5050:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m5070:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m6050:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m6070:-:*:*:*:*:*:*:*
cpe:2.3:h:sharp:mx-m905:-:*:*:*:*:*:*:*
Vendors & Products Sharp
Sharp bp-b537wr
Sharp bp-b540wr
Sharp bp-b547wd
Sharp bp-b550wd
Sharp mx-b355w
Sharp mx-b355wt
Sharp mx-b355wz
Sharp mx-b455w
Sharp mx-b455wt
Sharp mx-b455wz
Sharp mx-m2630
Sharp mx-m3050
Sharp mx-m3070
Sharp mx-m3550
Sharp mx-m3570
Sharp mx-m4050
Sharp mx-m4070
Sharp mx-m5050
Sharp mx-m5070
Sharp mx-m6050
Sharp mx-m6070
Sharp mx-m905
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 26 Nov 2024 07:45:00 +0000

Type Values Removed Values Added
Description The web interface of the affected devices process some crafted HTTP requests improperly, leading to a device crash. More precisely, a crafted parameter to billcodedef_sub_sel.html is not processed properly and device-crash happens. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].
Weaknesses CWE-125
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2024-11-26T07:38:24.464Z

Updated: 2024-11-26T16:28:15.625Z

Reserved: 2024-05-22T09:00:10.181Z

Link: CVE-2024-36251

cve-icon Vulnrichment

Updated: 2024-11-26T16:28:04.401Z

cve-icon NVD

Status : Received

Published: 2024-11-26T08:15:06.760

Modified: 2024-11-26T08:15:06.760

Link: CVE-2024-36251

cve-icon Redhat

No data.