CVEs (9)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 4.8 MEDIUM· v3 N/A· v2 Sharp and Toshiba Tec MFPs improperly validate input data in URI data registration, resulting in a stored cross-site scripting vulnerability. If crafted input is stored by an administrative user, malicious script may be...Show more |
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, resulting in a reflected cross-site scripting vulnerability. Accessing a crafted URL which points to an affected product may cause malicio...Show more |
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, which may allow contamination of unintended data to HTTP response headers. Accessing a crafted URL which points to an affected product may...Show more |
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Sharp and Toshiba Tec MFPs improperly process HTTP authentication requests, resulting in an authentication bypass vulnerability. |
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 8.1 HIGH· v3 N/A· v2 Sharp and Toshiba Tec MFPs provide configuration related APIs. They are expected to be called by administrative users only, but insufficiently restricted.
A non-administrative user may execute some configuration APIs. |
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Sharp and Toshiba Tec MFPs improperly process URI data in HTTP PUT requests resulting in a path Traversal vulnerability.
Unintended internal files may be retrieved when processing crafted HTTP requests. |
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Sharp and Toshiba Tec MFPs provide the web page to download data, where query parameters in HTTP requests are improperly processed and resulting in an Out-of-bounds Read vulnerability. Crafted HTTP requests may cause af...Show more |
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Sharp and Toshiba Tec MFPs improperly process HTTP request headers, resulting in an Out-of-bounds Read vulnerability.
Crafted HTTP requests may cause affected products crashed. |
2Sharp Toshibatec320Bp 30c25 Firmware Bp 30c25t FirmwareBp 30c25y Firmware+317 moreJun 17, 2026 Oct 25, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Sharp and Toshiba Tec MFPs contain multiple Out-of-bounds Read vulnerabilities, due to improper processing of keyword search input and improper processing of SOAP messages. Crafted HTTP requests may cause affected produ...Show more |