Sharp MFP是日本夏普(Sharp)公司的一系列多功能打印机。 Sharp MFP 存在安全漏洞,该漏洞源于没有正确中和路径名中可能导致路径名解析到受限目录之外的位置的特殊元素,容易受到路径遍历攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Sharp Corporation | Multiple MFPs (multifunction printers) | See the information provided by Sharp Corporation listed under [References] | - |
|
| Toshiba Tec Corporation | Multiple MFPs (multifunction printers) | See the information provided by Toshiba Tec Corporation listed under [References] | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | It was observed that Sharp printers are vulnerable to an arbitrary directory listing without authentication. Any attacker can list any directory located in the printer and recover any file. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-33605.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-35244 | 9.1 CRITICAL | Sharp MFP 安全漏洞 |
| CVE-2024-33610 | 9.1 CRITICAL | Sharp MFP 安全漏洞 |
| CVE-2024-36248 | 9.1 CRITICAL | Sharp MFP 安全漏洞 |
| CVE-2024-28038 | 9.0 CRITICAL | Sharp MFP 安全漏洞 |
| CVE-2024-36254 | 7.5 HIGH | Sharp MFP和Toshiba MFP 安全漏洞 |
| CVE-2024-36251 | 7.5 HIGH | Sharp MFP 安全漏洞 |
| CVE-2024-36249 | 7.4 HIGH | Sharp MFP和Toshiba MFP 跨站脚本漏洞 |
| CVE-2024-28955 | 5.9 MEDIUM | Sharp MFP 安全漏洞 |
| CVE-2024-32151 | 5.9 MEDIUM | Sharp MFP 安全漏洞 |
| CVE-2024-29978 | 5.9 MEDIUM | Sharp MFP 安全漏洞 |
| CVE-2024-29146 | 5.9 MEDIUM | Sharp MFP 安全漏洞 |
| CVE-2024-33616 | 5.3 MEDIUM | Sharp MFP 安全漏洞 |
| CVE-2024-34162 | 5.3 MEDIUM | Sharp MFP 安全漏洞 |
No comments yet