VYPR
Vendor

Brother

Products
400
CVEs
39
Across products
130
Status
Private

Products

400
View all 400 products →

Recent CVEs

39
View all 39 CVEs →
  • CVE-2017-7588CriApr 12, 2017
    risk 0.69cvss 9.8epss 0.34

    On certain Brother devices, authorization is mishandled by including a valid AuthCookie cookie in the HTTP response to a failed login attempt. Affected models are: MFC-J6973CDW MFC-J4420DW MFC-8710DW MFC-J4620DW MFC-L8850CDW MFC-J3720 MFC-J6520DW MFC-L2740DW MFC-J5910DW…

  • CVE-2019-13192CriMar 13, 2020
    risk 0.64cvss 9.8epss 0.04

    Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a heap buffer overflow vulnerability as the IPP service did not parse attribute names properly. This would allow an attacker to execute arbitrary code on the device.

  • CVE-2019-20457CriNov 7, 2024
    risk 0.59cvss 9.1epss 0.01

    An issue was discovered on Brother MFC-J491DW C1806180757 devices. The printer's web-interface password hash can be retrieved without authentication, because the response header of any failed login attempt returns an incomplete authorization cookie. The value of the…

  • CVE-2019-13193HigMar 13, 2020
    risk 0.57cvss 8.8epss 0.03

    Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a stack buffer overflow vulnerability as the web server did not parse the cookie value properly. This would allow an attacker to execute arbitrary code on the device.

  • CVE-2017-16249HigNov 10, 2017
    risk 0.57cvss 7.5epss 0.59

    The Debut embedded http server contains a remotely exploitable denial of service where a single malformed HTTP POST request can cause the server to hang until eventually replying (~300 seconds) with an HTTP 500 error. While the server is hung, print jobs over the network are…

  • CVE-2017-2244HigJul 7, 2017
    risk 0.57cvss 8.8epss 0.01

    Cross-site request forgery (CSRF) vulnerability in MFC-J960DWN firmware ver.D and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.

  • CVE-2021-47985HigJun 19, 2026
    risk 0.51cvss 7.8epss 0.00

    Brother SAPSprint 7.60 contains an unquoted service path vulnerability in the SAPSprint service binary that allows local attackers to escalate privileges. Attackers can place a malicious executable in the Program Files directory path to be executed with LocalSystem privileges…

  • CVE-2021-47869HigJan 21, 2026
    risk 0.51cvss 7.8epss 0.00

    Brother BRAdmin Professional 3.75 contains an unquoted service path vulnerability in the BRA_Scheduler service that allows local users to potentially execute arbitrary code. Attackers can place a malicious executable named 'BRAdmin' in the C:\Program Files (x86)\Brother\…

  • CVE-2020-36929HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    Brother BRPrint Auditor 3.0.7 contains an unquoted service path vulnerability in its Windows service configurations that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted file paths in BrAuSvc and BRPA_Agent services to inject…

  • CVE-2020-36928HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    Brother BRAgent 1.38 contains an unquoted service path vulnerability in the WBA_Agent_Client service running with LocalSystem privileges. Attackers can exploit the unquoted path in C:\Program Files (x86)\Brother\BRAgent\ to inject and execute malicious code with elevated system…

  • CVE-2025-49797HigJun 25, 2025
    risk 0.51cvss 7.8epss 0.00

    Multiple Brother driver installers for Windows contain a privilege escalation vulnerability. If exploited, an arbitrary program may be executed with the administrative privilege. As for the details of affected product names, model numbers, and versions, refer to the information…

  • CVE-2024-51983HigJun 25, 2025
    risk 0.49cvss 7.5epss 0.09

    An unauthenticated attacker who can connect to the Web Services feature (HTTP TCP port 80) can issue a WS-Scan SOAP request containing an unexpected JobToken value which will crash the target device. The device will reboot, after which the attacker can reissue the command to…

  • CVE-2024-51982HigJun 25, 2025
    risk 0.49cvss 7.5epss 0.08

    An unauthenticated attacker who can connect to TCP port 9100 can issue a Printer Job Language (PJL) command that will crash the target device. The device will reboot, after which the attacker can reissue the command to repeatedly crash the device. A malformed PJL variable…

  • CVE-2023-29984HigJul 11, 2023
    risk 0.49cvss 7.5epss 0.01

    Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service (DoS) condition. As for the affected…

  • CVE-2019-13194HigMar 13, 2020
    risk 0.49cvss 7.5epss 0.02

    Some Brother printers (such as the HL-L8360CDW v1.20) were affected by different information disclosure vulnerabilities that provided sensitive information to an unauthenticated user who visits a specific URL.

  • CVE-2013-2676HigFeb 4, 2020
    risk 0.49cvss 7.5epss 0.02

    Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresses and other sensitive information.

  • CVE-2013-2674HigFeb 3, 2020
    risk 0.49cvss 7.5epss 0.03

    Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling of HTTP referrer headers.

  • CVE-2013-2672HigFeb 3, 2020
    risk 0.49cvss 7.5epss 0.02

    Brother MFC-9970CDW devices with firmware 0D allow cleartext submission of passwords.

  • CVE-2017-12568HigAug 6, 2017
    risk 0.49cvss 7.5epss 0.02

    Denial of Service vulnerability in Debut embedded httpd 1.20 in Brother DCP-J132W (and probably other DCP models) allows remote attackers to hang the printer (disrupting its network connection) by sending a large amount of HTTP packets.

  • CVE-2024-51979HigJun 25, 2025
    risk 0.47cvss 7.2epss 0.01

    An authenticated attacker may trigger a stack based buffer overflow by performing a malformed request to either the HTTP service (TCP port 80), the HTTPS service (TCP port 443), or the IPP service (TCP port 631). The malformed request will contain an empty Origin header value…