• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2019-13206
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2020-03-18
N/A
8.8 HIGH
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by a buffer overflow vulnerability in multiple parameters of the Document Boxes functionality of the web application that would allow an authenticated attacker to perform a Denial of Service attack, crashing the device, or potentially execute arbitrary code on the device.
CVE-2019-13205
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2021-07-21
N/A
7.5 HIGH
All configuration parameters of certain Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were accessible by unauthenticated users. This information was only presented in the menus when authenticated, and the pages that loaded this information were also protected. However, all files that contained the configuration parameters were accessible. These files contained sensitive information, such as users, community strings, and other passwords configured in the printer.
CVE-2019-13204
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2020-03-18
N/A
9.8 CRITICAL
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by multiple buffer overflow vulnerabilities in the IPP service. This would allow an unauthenticated attacker to cause a Denial of Service (DoS), and potentially execute arbitrary code on the device.
CVE-2019-13203
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2020-03-18
N/A
8.8 HIGH
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by an integer overflow vulnerability in the arg3 parameter of several functionalities of the web application that would allow an authenticated attacker to perform a Denial of Service attack, crashing the device, or potentially execute arbitrary code on the device.
CVE-2019-13202
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2020-03-18
N/A
9.8 CRITICAL
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by a buffer overflow vulnerability in the okhtmlfile and failhtmlfile parameters of several functionalities of the web application that would allow an unauthenticated attacker to perform a Denial of Service attack, crashing the device, or potentially execute arbitrary code on the device.
CVE-2019-13201
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2020-03-18
N/A
9.8 CRITICAL
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by a buffer overflow vulnerability in the LPD service. This would allow an unauthenticated attacker to cause a Denial of Service (DoS) in the LPD service and potentially execute arbitrary code on the device.
CVE-2019-13200
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2020-03-18
N/A
6.1 MEDIUM
The web application of several Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) was affected by Reflected XSS. Successful exploitation of this vulnerability can lead to session hijacking of the administrator in the web application or the execution of unwanted actions.
CVE-2019-1320
2020-08-24
N/A
7.8 HIGH
An elevation of privilege vulnerability exists when Windows improperly handles authentication requests, aka 'Microsoft Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1322, CVE-2019-1340.
CVE-2019-13199
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2020-03-18
N/A
6.5 MEDIUM
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) did not implement any mechanism to avoid CSRF. Successful exploitation of this vulnerability can lead to the takeover of a local account on the device.
CVE-2019-13198
Ecosys M5526cdw Firmware, Kyocera
Ecosys_m5526cdw_firmware, Ecosys_m5526cdw, Command_center_rx, Taskalfa_4501i, Taskalfa_5052ci
2020-03-19
N/A
6.1 MEDIUM
The web application of several Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) was affected by Stored XSS. Successful exploitation of this vulnerability can lead to session hijacking of the administrator in the web application or the execution of unwanted actions.
« Previous 1 … 6,312 6,313 6,314 6,315 6,316 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE