Brother
brother
23 CVEs • 774 products
Products (774)
Click to collapseToggle
Products (774)
Click to collapse
CVEs (23)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Brother BRPrint Auditor 3.0.7 contains an unquoted service path vulnerability in its Windows service configurations that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted fi...Show more |
Brother BRAgent 1.38 contains an unquoted service path vulnerability in the WBA_Agent_Client service running with LocalSystem privileges. Attackers can exploit the unquoted path in C:\Program Files (x86)\Brother\BRAgent\...Show more |
Improper link resolution before file access ('Link Following') issue exists in iPrint&Scan Desktop for Windows versions 11.0.0 and earlier. A symlink attack by a malicious user may cause a Denial-of-service (DoS) conditi...Show more |
3Brother FujifilmToshibatec216Dcp 1610w Firmware Dcp 1610we FirmwareDcp 1610wr Firmware+213 moreNov 21, 2024 Jul 11, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service...Show more |
Brother iPrint&Scan V6.11.2 and earlier contains an improper access control vulnerability. This vulnerability may be exploited by the other app installed on the victim user's Android device, which may lead to displaying...Show more |
1Brother 300Ads 2400n Firmware Ads 2800w FirmwareAds 3000n Firmware+297 moreNov 21, 2024 Mar 13, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Some Brother printers (such as the HL-L8360CDW v1.20) were affected by different information disclosure vulnerabilities that provided sensitive information to an unauthenticated user who visits a specific URL. |
1Brother 300Ads 2400n Firmware Ads 2800w FirmwareAds 3000n Firmware+297 moreNov 21, 2024 Mar 13, 2020 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a stack buffer overflow vulnerability as the web server did not parse the cookie value properly. This would allow an attacker to execute arbitrary co...Show more |
1Brother 300Ads 2400n Firmware Ads 2800w FirmwareAds 3000n Firmware+297 moreNov 21, 2024 Mar 13, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a heap buffer overflow vulnerability as the IPP service did not parse attribute names properly. This would allow an attacker to execute arbitrary cod...Show more |
1Brother 1Mfc 9970cdw Firmware Nov 21, 2024 Feb 5, 2020 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Brother MFC-9970CDW 1.10 devices with Firmware L contain a Frameable response (Clickjacking) vulnerability which could allow remote attackers to obtain sensitive information. |
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresses and other sensitive information. |
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling of HTTP referrer heade...Show more |
1Brother 1Mfc 9970cdw Firmware Nov 21, 2024 Feb 3, 2020 N/A· v4 6.8 MEDIUM· v3 4.6 MEDIUM· v2 Brother MFC-9970CDW 1.10 firmware L devices contain a security bypass vulnerability which allows physically proximate attackers to gain unauthorized access. |
Brother MFC-9970CDW devices with firmware 0D allow cleartext submission of passwords. |
1Brother 2Hl L2340d Firmware Hl L2380dw FirmwareNov 21, 2024 Jun 1, 2018 N/A· v4 4.8 MEDIUM· v3 3.5 LOW· v2 Cross-site scripting (XSS) vulnerability on Brother HL series printers allows remote attackers to inject arbitrary web script or HTML via the url parameter to etc/loginerror.html. |
The Debut embedded http server contains a remotely exploitable denial of service where a single malformed HTTP POST request can cause the server to hang until eventually replying (~300 seconds) with an HTTP 500 error. Wh...Show more |
Denial of Service vulnerability in Debut embedded httpd 1.20 in Brother DCP-J132W (and probably other DCP models) allows remote attackers to hang the printer (disrupting its network connection) by sending a large amount...Show more |
Cross-site request forgery (CSRF) vulnerability in MFC-J960DWN firmware ver.D and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors. |
1Brother 4Ads Firmware Dcp FirmwareHl Firmware+1 moreMay 13, 2026 Apr 12, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 On certain Brother devices, authorization is mishandled by including a valid AuthCookie cookie in the HTTP response to a failed login attempt. Affected models are: MFC-J6973CDW MFC-J4420DW MFC-8710DW MFC-J4620DW MFC-L885...Show more |
1Brother 2Mfc J4410dw Mfc J4410dw FirmwareMay 6, 2026 Jan 16, 2015 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in Brother MFC-J4410DW printer with firmware before L allows remote attackers to inject arbitrary web script or HTML via the url parameter to general/status.html and possibly othe...Show more |
1Brother 2Mfc 9970cdw Mfc 9970cdw FirmwareMay 6, 2026 Mar 14, 2014 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Multiple cross-site scripting (XSS) vulnerabilities in the Brother MFC-9970CDW printer with firmware L (1.10) allow remote attackers to inject arbitrary web script or HTML via the (1) id or (2) val parameter to admin/adm...Show more |