Vulnerabilities > CVE-2022-25343 - Unspecified vulnerability in Olivetti D-Color Mf3555 Firmware 2Xds000.002.271

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
olivetti

Summary

An issue was discovered on Olivetti d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application is affected by Denial of Service. An unauthenticated attacker, who can send POST requests to the /download/set.cgi page by manipulating the failhtmfile variable, is able to cause interruption of the service provided by the Web Application.

Vulnerable Configurations

Part Description Count
OS
Olivetti
1
Hardware
Olivetti
1