Vulnerabilities > Kyoceramita

DATE CVE VULNERABILITY TITLE RISK
2009-08-28 CVE-2008-7113 Cryptographic Issues vulnerability in Kyoceramita Scanner File Utility 3.3.0.1
The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 uses a small space of predictable user identification numbers for access control, which allows remote attackers to upload documents via a brute force attack.
network
low complexity
kyoceramita CWE-310
6.4
2009-08-28 CVE-2008-7112 Improper Input Validation vulnerability in Kyoceramita Scanner File Utility 3.3.0.1
The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to cause a denial of service (hang or crash) via invalid field length values in a malformed (1) document or (2) request.
network
low complexity
kyoceramita CWE-20
5.0
2009-08-28 CVE-2008-7111 Permissions, Privileges, and Access Controls vulnerability in Kyoceramita Scanner File Utility 3.3.0.1
The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 does not restrict the filenames or extensions of uploaded files, which makes it easier for remote attackers to execute arbitrary code or overwrite files by leveraging CVE-2008-7110 and CVE-2008-7109.
network
kyoceramita CWE-264
critical
9.3
2009-08-28 CVE-2008-7110 Path Traversal vulnerability in Kyoceramita Scanner File Utility 3.3.0.1
Directory traversal vulnerability in the Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to upload files to arbitrary locations via a ..
network
low complexity
kyoceramita CWE-22
7.8
2009-08-28 CVE-2008-7109 Incorrect Authorization vulnerability in Kyoceramita Scanner File Utility 3.3.0.1
The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to bypass authorization and upload arbitrary files to the client system via a modified program that does not prompt the user for a password.
network
low complexity
kyoceramita CWE-863
critical
9.8