漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Authenticated disclosure of external service passwords via pass-back attack affecting multiple models from Brother Industries, Ltd, FUJIFILM Business Innovation, Ricoh, Toshiba Tec, and Konica Minolta, Inc.
Vulnerability Description
An authenticated attacker can reconfigure the target device to use an external service (such as LDAP or FTP) controlled by the attacker. If an existing password is present for an external service, the attacker can force the target device to authenticate to an attacker controlled device using the existing credentials for that external service. In the case of an external LDAP or FTP service, this will disclose the plaintext password for that external service to the attacker.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
Vulnerability Type
不充分的凭证保护机制
Vulnerability Title
Brother Industries Multiple driver installers for Windows 安全漏洞
Vulnerability Description
Brother Industries Multiple driver installers for Windows是日本Brother Industries公司的一个驱动软件。 Brother Industries Multiple driver installers for Windows存在安全漏洞,该漏洞源于经验证的攻击者可重新配置目标设备使用外部服务,可能导致凭据泄露。
CVSS Information
N/A
Vulnerability Type
N/A