Sploitus

CVE-2024-27166

1 known exploit for CVE-2024-27166

Coredump binaries in Toshiba printers have incorrect permissions. A local attacker can steal confidential information. As for the affected products/models/versions, see the reference URL.

Affected products
Toshiba Printers
CVSS 3.1
7.4 HIGH
EPSS
0.2% (7th percentile)
Weakness
CWE-276, CWE-256, CWE-319
NVD status
Deferred
Published
2024-06-14
Attack patterns
CAPEC-180
Entry point
name request body
Path
contentwebserver/upload

Fix

This issue is fixed in the version released on June 14, 2024 and all later versions.

CVE-2024-27166 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2024-27166

Proof-of-concept code and exploit modules indexed by Sploitus