VYPR

TASKalfa 4053ci

by Kyocera

CVEs (3)

  • CVE-2023-34260HigNov 3, 2023
    risk 0.54cvss 7.5epss 0.73

    Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow a denial of service (service outage) via /wlmdeu%2f%2e%2e%2f%2e%2e followed by a directory reference such as %2fetc%00index.htm to try to read the /etc directory.

  • CVE-2023-34259MedNov 3, 2023
    risk 0.36cvss 4.9epss 0.60

    Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal to read arbitrary files on the filesystem, even files that require root privileges. NOTE: this issue exists because of an incomplete fix for CVE-2020-23575.

  • CVE-2023-34261MedNov 3, 2023
    risk 0.35cvss 5.3epss 0.08

    Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow identification of valid user accounts via username enumeration because they lead to a "nicht einloggen" error rather than a falsch error.