Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Toshiba Tec e-Studio multi-function peripheral (MFP) — Vulnerabilities & Security Advisories 43

All 43 CVE vulnerabilities found in Toshiba Tec e-Studio multi-function peripheral (MFP), with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities associated with the Toshiba Tec e-Studio multi-function peripheral (MFP), focusing on known weaknesses affecting this specific hardware line. The collection covers a broad range of defects including memory corruption, buffer overflows, and configuration errors, documenting advisories issued over the past decade. Here, readers can track the vendor’s published security notices, understand the specific class of weaknesses affecting this device family, and review the complete vulnerability history for the product. The data is presented as a structured, searchable index designed for security analysts and IT administrators who need to assess patching priorities or audit compliance. Each entry links to the original advisory source, providing context for the severity and affected firmware versions. This resource enables teams to identify recurring patterns in Toshiba’s MFP security posture, facilitating more informed risk management decisions for organizations relying on these devices within their network infrastructure.

Vendor: Toshiba Tec Corporation

CVE ID Title CVSS Severity Published
CVE-2024-3498 Incorrect Permission Assignment Privilege Escalation Vulnerability CWE-250 7.8 High 2024-06-14
CVE-2024-3497 Directory Traversal Remote Code Execution Vulnerability CWE-23 8.8 High 2024-06-14
CVE-2024-3496 Authentication Bypass Vulnerability CWE-288 8.8 High 2024-06-14
CVE-2024-27180 TOCTOU vulnerability CWE-276 6.7 Medium 2024-06-14
CVE-2024-27179 Session disclosure inside the log files CWE-1295 4.7 Medium 2024-06-14
CVE-2024-27178 Remote Code Execution CWE-22 7.2 High 2024-06-14
CVE-2024-27177 Remote Code Execution CWE-22 7.2 High 2024-06-14
CVE-2024-27176 Remote Code Execution CWE-22 7.2 High 2024-06-14
CVE-2024-27175 Local File Inclusion CWE-73 4.4 Medium 2024-06-14
CVE-2024-27174 insecure upload CWE-22 9.8 Critical 2024-06-14
CVE-2024-27173 insecure upload CWE-22 9.8 Critical 2024-06-14
CVE-2024-27172 Remote Code Execution CWE-78 9.8 Critical 2024-06-14
CVE-2024-27171 Insecure permissions CWE-276 7.4 High 2024-06-14
CVE-2024-27170 Hardcoded credentials for WebDAV access CWE-798 7.4 High 2024-06-14
CVE-2024-27169 Lack of authentication CWE-306 8.4 High 2024-06-14
CVE-2024-27168 Hardcoded keys used to generate authentication cookies CWE-798 7.1 High 2024-06-14
CVE-2024-27167 Insecure permissions CWE-276 7.4 High 2024-06-14
CVE-2024-27166 Insecure permissions CWE-276 7.4 High 2024-06-14
CVE-2024-27165 Local Privilege Escalation CWE-272 7.8 High 2024-06-14
CVE-2024-27164 Hardcoded credentials CWE-259 7.1 High 2024-06-14
CVE-2024-27163 Leak of admin password and passwords CWE-319 6.5 Medium 2024-06-14
CVE-2024-27162 DOM-based XSS CWE-79 6.1 Medium 2024-06-14
CVE-2024-27161 Hardcoded password used to encrypt files CWE-798 6.2 Medium 2024-06-14
CVE-2024-27160 Hardcoded password used to encrypt logs and use of weak cipher CWE-798 6.2 Medium 2024-06-14
CVE-2024-27159 Hardcoded password used to encrypt logs CWE-798 6.2 Medium 2024-06-14
CVE-2024-27158 Hardcoded root password CWE-1392 7.4 High 2024-06-14
CVE-2024-27157 Leak of authentication sessions in secure logs CWE-532 6.8 Medium 2024-06-14
CVE-2024-27156 Leak of authentication sessions in secure logs CWE-532 6.8 Medium 2024-06-14
CVE-2024-27155 Local Privilege Escalation and Remote Code Execution using insecure permissions CWE-276 7.7 High 2024-06-14
CVE-2024-27154 Passwords are stored in clear-text logs. CWE-532 6.2 Medium 2024-06-14

All 43 known CVE vulnerabilities affecting Toshiba Tec e-Studio multi-function peripheral (MFP) with full Chinese analysis, references, and POCs where available.