CVE-2024-27162
Toshiba printers provide a web interface that will load the
Publication date: 2024-06-14
Last updated on: 2024-11-21
Assigner: ecc0f906-8666-484c-bcf8-c3b7520a72f0
Description
Description
Toshiba printers provide a web interface that will load the JavaScript file. The file contains insecure codes vulnerable to XSS and is loaded inside all the webpages provided by the printer. An attacker can steal the cookie of an admin user. As for the affected products/models/versions, see the reference URL.
CVSS Scores
EPSS Scores
Last evaluated: 2025-01-30
Probability: | |
Percentile: |
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
CWE ID | Description |
---|---|
CWE-79 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
Meta Information
Date published:
2024-06-14
Date last modified:
2024-11-21
Date generated:
2025-03-20
NVD report: