VYPR

D Copia253mf Plus Firmware

by Kyocera

CVEs (4)

  • CVE-2023-34260HigNov 3, 2023
    risk 0.54cvss 7.5epss 0.73

    Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow a denial of service (service outage) via /wlmdeu%2f%2e%2e%2f%2e%2e followed by a directory reference such as %2fetc%00index.htm to try to read the /etc directory.

  • CVE-2020-23575HigMay 10, 2021
    risk 0.52cvss 7.5epss 0.37

    A directory traversal vulnerability exists in Kyocera Printer d-COPIA253MF plus. Successful exploitation of this vulnerability could allow an attacker to retrieve or view arbitrary files from the affected server.

  • CVE-2023-34259MedNov 3, 2023
    risk 0.36cvss 4.9epss 0.60

    Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal to read arbitrary files on the filesystem, even files that require root privileges. NOTE: this issue exists because of an incomplete fix for CVE-2020-23575.

  • CVE-2023-34261MedNov 3, 2023
    risk 0.35cvss 5.3epss 0.08

    Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow identification of valid user accounts via username enumeration because they lead to a "nicht einloggen" error rather than a falsch error.