Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2698▼ 542 respecto a la semana anterior
Críticas / altas1273▼ 220 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)254▼ 248 respecto a la semana anterior
–

195 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.1)0.53%—Printerlogic Vasion PrintPrinterlogic Virtual Appliance5/3/202517/6/2026
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.1002 Application 20.0.2614 allows Cross-Site Scripting V-2024-016.
AplazadaMedia (5.3)0.62%—Pcl6 V4 Printer DriverAIUFR II V4 Printer DriverAILipslx V4 Printer DriverAI26/2/202517/6/2026
Out-of-bounds vulnerability in slope processing during curve rendering in Generic PCL6 V4 Printer Driver / Generic UFR II V4 Printer Driver / Generic LIPSLX V4 Printer Driver.
AplazadaMedia (5.3)0.62%—Pcl6 V4 Printer DriverAIUFR II V4 Printer DriverAILipslx V4 Printer DriverAI26/2/202517/6/2026
Out-of-bounds vulnerability due to improper memory release during image rendering in Generic PCL6 V4 Printer Driver / Generic UFR II V4 Printer Driver / Generic LIPSLX V4 Printer Driver.
AplazadaMedia (5.3)0.62%—Pcl6 V4 Printer DriverAIUFR II V4 Printer DriverAILipslx V4 Printer DriverAI26/2/202517/6/2026
Out-of-bounds vulnerability in curve segmentation processing of Generic PCL6 V4 Printer Driver / Generic UFR II V4 Printer Driver / Generic LIPSLX V4 Printer Driver.
AplazadaAlta (7.5)0.56%—Nahimsalami Ahime Image PrinterAI16/10/202417/6/2026
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in nahimsalami Ahime Image Printer ahime-image-printer.This issue affects Ahime Image Printer: from n/a through <= 1.0.0.
AplazadaMedia (6.5)0.26%—Lenovo PrintersAI16/8/202417/6/2026
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to deny printer connections until the system is rebooted.
AplazadaMedia (6.5)0.26%—Lenovo PrintersAI16/8/202417/6/2026
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to prevent printer services from being reachable until the system is rebooted.
AplazadaMedia (6.5)0.26%—Lenovo PrintersAI16/8/202417/6/2026
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to deny printing capabilities until the system is rebooted.
AplazadaMedia (6.5)0.30%—Lenovo PrintersAI16/8/202417/6/2026
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to disrupt the printer's functionality until a manual system reboot occurs.
AplazadaMedia (6.5)0.34%—Lenovo PrintersAI16/8/202417/6/2026
A denial-of-service vulnerability was reported in some Lenovo printers that could allow an unauthenticated attacker on a shared network to crash printer communications until the system is rebooted.
AplazadaBaja (3.5)0.28%—Honeywell Pc42t Printer FirmwareAIHoneywell Pc42tp Printer FirmwareAIHoneywell Pc42d Printer FirmwareAI29/7/202417/6/2026
Honeywell PC42t, PC42tp, and PC42d Printers, T10.19.020016 to T10.20.060398, contain a cross-site scripting vulnerability. A(n) attacker could potentially inject malicious code which may lead to information disclosure, session theft, or client-side request forgery. Honeywell recommends updating to the most recent…
AplazadaAlta (8.4)0.59%💥 PoCEntrustdatacard XPS Card Printer DriverAI22/7/202417/6/2026
Insecure permissions in Entrust Datacard XPS Card Printer Driver 8.5 and earlier without the dxp1-patch-E24-004 patch allows unauthenticated attackers to execute arbitrary code as SYSTEM via a crafted DLL payload.
AplazadaAlta (8.2)0.58%—Ricoh MFPAIRicoh PrinterAI10/7/202417/6/2026
Out-of-bounds write vulnerability exists in Ricoh MFPs and printers. If a remote attacker sends a specially crafted request to the affected products, the products may be able to cause a denial-of-service (DoS) condition and/or user's data may be destroyed.
AplazadaAlta (8.8)0.74%—Toshiba PrinterAI14/6/202417/6/2026
Path traversal vulnerability in the web server of the Toshiba printer enables attacker to overwrite orginal files or add new ones to the printer. As for the affected products/models/versions, see the reference URL.
AplazadaAlta (7.4)0.27%—Toshiba PrinterAI14/6/202417/6/2026
It was observed that all the Toshiba printers contain credentials used for WebDAV access in the readable file. Then, it is possible to get a full access with WebDAV to the printer. As for the affected products/models/versions, see the reference URL.
AplazadaAlta (8.4)0.30%—Toshiba PrintersAI14/6/202417/6/2026
Toshiba printers provides API without authentication for internal access. A local attacker can bypass authentication in applications, providing administrative access. As for the affected products/models/versions, see the reference URL.
AplazadaAlta (7.4)0.25%—Toshiba PrintersAISendmailAI14/6/202417/6/2026
Toshiba printers use Sendmail to send emails to recipients. Sendmail is used with several insecure directories. A local attacker can inject a malicious Sendmail configuration file. As for the affected products/models/versions, see the reference URL.
AplazadaAlta (7.4)0.17%—Toshiba PrintersAI14/6/202417/6/2026
Coredump binaries in Toshiba printers have incorrect permissions. A local attacker can steal confidential information. As for the affected products/models/versions, see the reference URL.
AplazadaAlta (7.8)0.23%—Toshiba PrintersAI14/6/202417/6/2026
Toshiba printers contain a suidperl binary and it has a Local Privilege Escalation vulnerability. A local attacker can get root privileges. As for the affected products/models/versions, see the reference URL.
AplazadaAlta (7.1)0.25%—Toshiba PrintersAI14/6/202417/6/2026
Toshiba printers contain hardcoded credentials. As for the affected products/models/versions, see the reference URL.
AplazadaMedia (6.5)0.42%—Toshiba PrintersAI14/6/202417/6/2026
Toshiba printers will display the password of the admin user in clear-text and additional passwords when sending 2 specific HTTP requests to the internal API. An attacker stealing the cookie of an admin or abusing a XSS vulnerability can recover this password in clear-text and compromise the printer. This…
AplazadaMedia (6.1)21%—Toshiba PrintersAI14/6/202417/6/2026
Toshiba printers provide a web interface that will load the JavaScript file. The file contains insecure codes vulnerable to XSS and is loaded inside all the webpages provided by the printer. An attacker can steal the cookie of an admin user. As for the affected products/models/versions, see the reference URL.
AplazadaMedia (6.2)0.16%—Toshiba PrintersAI14/6/202417/6/2026
all the Toshiba printers have programs containing a hardcoded key used to encrypt files. An attacker can decrypt the encrypted files using the hardcoded key. Insecure algorithm is used for the encryption. This vulnerability can be executed in combination with other vulnerabilities and difficult to execute alone. So,…
AplazadaMedia (6.2)0.24%—Toshiba PrintersAI14/6/202417/6/2026
All the Toshiba printers contain a shell script using the same hardcoded key to encrypt logs. An attacker can decrypt the encrypted files using the hardcoded key. This vulnerability can be executed in combination with other vulnerabilities and difficult to execute alone. So, the CVSS score for this vulnerability alone…
AplazadaMedia (6.2)0.26%—Toshiba PrintersAI14/6/202417/6/2026
All the Toshiba printers contain a shell script using the same hardcoded key to encrypt logs. An attacker can decrypt the encrypted files using the hardcoded key. This vulnerability can be executed in combination with other vulnerabilities and difficult to execute alone. So, the CVSS score for this vulnerability alone…
Orbitaley — Vulnerabilidades