VYPR

Mfc 9970cdw

by Brother

CVEs (8)

  • CVE-2013-2675Feb 5, 2020
    risk 0.00cvss epss 0.02

    Brother MFC-9970CDW 1.10 devices with Firmware L contain a Frameable response (Clickjacking) vulnerability which could allow remote attackers to obtain sensitive information.

  • CVE-2013-2676Feb 4, 2020
    risk 0.00cvss epss 0.02

    Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresses and other sensitive information.

  • CVE-2013-2674Feb 3, 2020
    risk 0.00cvss epss 0.03

    Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling of HTTP referrer headers.

  • CVE-2013-2673Feb 3, 2020
    risk 0.00cvss epss 0.01

    Brother MFC-9970CDW 1.10 firmware L devices contain a security bypass vulnerability which allows physically proximate attackers to gain unauthorized access.

  • CVE-2013-2672Feb 3, 2020
    risk 0.00cvss epss 0.02

    Brother MFC-9970CDW devices with firmware 0D allow cleartext submission of passwords.

  • CVE-2013-2671Mar 14, 2014
    risk 0.00cvss epss 0.01

    Multiple cross-site scripting (XSS) vulnerabilities in the Brother MFC-9970CDW printer with firmware L (1.10) allow remote attackers to inject arbitrary web script or HTML via the (1) id or (2) val parameter to admin/admin_main.html; (3) id, (4) val, or (5) arbitrary parameter…

  • CVE-2013-2670Mar 14, 2014
    risk 0.00cvss epss 0.02

    Cross-site scripting (XSS) vulnerability in the Brother MFC-9970CDW printer with firmware G (1.03) and L (1.10) allows remote attackers to inject arbitrary web script or HTML via an arbitrary parameter name (QUERY_STRING) to admin/admin_main.html, a different vulnerability than…

  • CVE-2013-2507Mar 14, 2014
    risk 0.00cvss epss 0.02

    Multiple cross-site scripting (XSS) vulnerabilities in the Brother MFC-9970CDW printer with firmware G (1.03) allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to admin/log_to_net.html or (2) kind parameter to fax/copy_settings.html, a…