The Recycler
  • Biuromax Masthead web banner March 2024
  • Katun Masthead Nov 2024
  • Ambiente 2025 Masthead
  • G&G Masthead August 2024

Toshiba warns of vulnerability in MFPs

March 6, 2024

The company published a response to a vulnerability in the “Web Browser Configuration” function installed in some Toshiba Tec’s digital multi-function peripherals.

A vulnerability has been identified in the “Web Browser Configuration” function of some of Toshiba’s multi-function peripherals. The company confirmed that this issue does not result in the leakage of information from the product to outside parties.

Targeted products are e-STUDIO 301DN/ 302DNF devices. These products have been sold only in the Chinese market.

One of the vulnerabilities is CVE-2024-21824, a ‘Session Management Vulnerability’ whereby an attacker could log into the server setting screen using the cookie values that they stole by eavesdropping communications or attacking the user’s web browser.

Also identified was CVE-2024-22475, a ‘Cross-site Request Forgery Vulnerability’, which means if the user accesses a web page that an attacker set up and submits requests to the machine, the settings of the Web Based Management could be tampered with.

Toshiba is recommending firmware updates and offers the workaround that when connecting to the Internet, connect to a network protected through a firewall as described in the manual.

Categories : Around the Industry

Tags : Cyber Security MFPs Toshiba Tec Vulnerability

  • Cartridge Web Nov Web Banner
  • G&G web advert October 2024
  • Static Control June 2022 Big & Bold Ad
  • TN Core Nov Web advert
  • Biuromax web banner July 2024
  • IR Italiana Web ad January 2021
  • GM Technology Nov Web Ad
  • Ink Tank No Web advert
  • Apex Web ad Nov 2024
  • HYB Web banner Jan 2024
  • PCL Nov Web advert
  • Mito Web banner June 2024
  • Zhono Web ad March 2024
  • Denner Feb 2024 Web Ad
  • CET Web ad December 2023
  • ITP Web ad January 2021
  • denner UK Web Banner Jul 2024
  • Zhono Web ad March 2024
  • HYB Web banner Jan 2024
  • Mito Web banner June 2024
  • CET Web ad December 2023
  • PCL Nov Web advert
  • ITP Web ad January 2021
  • denner UK Web Banner Jul 2024
  • Denner Feb 2024 Web Ad
  • Mito Web banner June 2024
  • ITP Web ad January 2021
  • Zhono Web ad March 2024
  • PCL Nov Web advert
  • HYB Web banner Jan 2024
  • Denner Feb 2024 Web Ad
  • CET Web ad December 2023
  • denner UK Web Banner Jul 2024

The Recycler, Wittas House, Two Rivers, Station Lane, Witney, OX28 4BH, United Kingdom | Tel: +44 (0) 1993 899800 | Fax : +44 (0) 1993 226899
©2006-2023 The Recycler - Terms & Conditions - Privacy Policy including cookie use

Web design Dorset | Websites by Mark