High severity7.5NVD Advisory· Published Jun 25, 2025· Updated Apr 15, 2026
CVE-2024-51983
CVE-2024-51983
Description
An unauthenticated attacker who can connect to the Web Services feature (HTTP TCP port 80) can issue a WS-Scan SOAP request containing an unexpected JobToken value which will crash the target device. The device will reboot, after which the attacker can reissue the command to repeatedly crash the device.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- assets.contentstack.io/v3/assets/blte4f029e766e6b253/blt6495b3c6adf2867f/685aa980a26c5e2b1026969c/vulnerability-disclosure-whitepaper.pdfnvd
- support.brother.com/g/b/link.aspxnvd
- support.brother.com/g/b/link.aspxnvd
- www.fujifilm.com/fbglobal/eng/company/news/notice/2025/0625_announce.htmlnvd
- www.konicaminolta.com/global-en/security/advisory/pdf/km-2025-0001.pdfnvd
- www.rapid7.com/blog/post/multiple-brother-devices-multiple-vulnerabilities-fixednvd
- www.ricoh.com/products/security/vulnerabilities/vulnvd
- www.toshibatec.com/information/20250625_02.htmlnvd
News mentions
0No linked articles in our index yet.