BROTHER printers and scanners security bypass | CVE-2024-22475

NAME
__________
BROTHER printers and scanners security bypass

Platforms Affected:
Brother MFC-9970CDW
Brother MFC-J4410DW J
Brother MFC-J4410DW K
Brother MFC-J6973CDW
Brother MFC-J4420DW
Brother MFC-8710DW
Brother MFC-J4620DW
Brother MFC-L8850CDW
Brother MFC-J3720
Brother MFC-J6520DW
Brother MFC-L2740DW
Brother MFC-J5910DW
Brother MFC-J6920DW
Brother MFC-L2700DW
Brother MFC-9130CW
Brother MFC-9330CDW
Brother MFC-9340CDW
Brother MFC-J5620DW
Brother MFC-J6720DW
Brother MFC-L8600CDW
Brother MFC-L9550CDW
Brother MFC-L2720DW
Brother DCP-L2540DW
Brother DCP-L2520DW
Brother HL-3140CW
Brother HL-3170CDW
Brother HL-3180CDW
Brother HL-L8350CDW
Brother HL-L2380DW
Brother ADS-2500W
Brother ADS-1000W
Brother ADS-1500W
Brother MFC-J960DWN D
Brother DCP-J132W

Risk Level:
4.3

Exploitability:
Unproven

Consequences:
Gain Access

DESCRIPTION
__________

BROTHER printers and scanners is vulnerable to cross-site request forgery, caused by improper verification of user-supplied input by the Web Based Management portal. By persuading an authenticated user to visit a malicious Web site, a remote attacker could send a malformed HTTP request to perform unauthorized actions. An attacker could exploit this vulnerability to perform cross-site scripting attacks, Web cache poisoning, and other malicious activities.

CVSS 3.0 Information
__________

Privileges Required:
None

User Interaction:
Required

Scope:
Unchanged

Access Vector:
Network


A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.