Vulnerabilities > CVE-2013-2673 - Incorrect Authorization vulnerability in Brother Mfc-9970Cdw Firmware 1.10

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
brother
CWE-863

Summary

Brother MFC-9970CDW 1.10 firmware L devices contain a security bypass vulnerability which allows physically proximate attackers to gain unauthorized access.

Vulnerable Configurations

Part Description Count
OS
Brother
1
Hardware
Brother
1

Common Weakness Enumeration (CWE)

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/121553/brothermfc9970cdw-xss.txt
idPACKETSTORM:121553
last seen2016-12-05
published2013-05-08
reportersqlhacker
sourcehttps://packetstormsecurity.com/files/121553/Brother-MFC-9970CDW-Firmware-0D-Cross-Site-Scripting.html
titleBrother MFC-9970CDW Firmware 0D Cross Site Scripting