CVE-2024-27155
The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any Toshiba printer. The programs can be replaced by malicious programs by any local or remote attacker. As for the affected products/models/versions, see the reference URL.
- Affected products
- Toshiba Printers
- CVSS 3.1
- 7.7 HIGH
- EPSS
- 0.4% (35th percentile)
- Weakness
- CWE-276
- NVD status
- Deferred
- Published
- 2024-06-14
- Attack patterns
- CAPEC-180
- Entry point
- csrfpId request body
- Path
- contentwebserver
Fix
This issue is fixed in the version released on June 14, 2024 and all later versions.
CVE-2024-27155 at NVD
1 known exploit for CVE-2024-27155
Proof-of-concept code and exploit modules indexed by Sploitus