ZDI-CAN-23108: ZDI-24-813: Toshiba e-STUDIO2518A Authentication Bypass Vulnerability
Published Jun 18, 2024
·Updated
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of Toshiba e-STUDIO2518A printers. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2024-3496.
Affected Software
1 affected component
Toshiba e-STUDIO2518A
Event History
Jun 18, 2024
Advisory Published
via ZDI·05:00 AM
Data Sourced
via ZDI·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-CAN-23108?
The severity of ZDI-CAN-23108 is rated at 8.8 according to the CVSS score.
2
How do I fix ZDI-CAN-23108?
To fix ZDI-CAN-23108, you should apply the latest firmware updates provided by Toshiba for the e-STUDIO2518A printer.
3
Who can exploit ZDI-CAN-23108?
ZDI-CAN-23108 can be exploited by network-adjacent attackers without requiring authentication.
4
What type of devices are affected by ZDI-CAN-23108?
ZDI-CAN-23108 affects the Toshiba e-STUDIO2518A printers.
5
What does ZDI-CAN-23108 allow an attacker to do?
ZDI-CAN-23108 allows an attacker to bypass authentication on the affected Toshiba printers.