Vulnerability Description
The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to bypass authorization and upload arbitrary files to the client system via a modified program that does not prompt the user for a password.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kyoceramita | Scanner File Utility | 3.3.0.1 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/31631Broken LinkVendor Advisory
- http://www.informit.com/guides/content.aspx?g=security&seqNum=320ExploitNot Applicable
- http://www.securityfocus.com/archive/1/495772/100/0/threadedBroken LinkThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/30855Broken LinkExploitThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44717Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/53004Third Party AdvisoryVDB Entry
- http://secunia.com/advisories/31631Broken LinkVendor Advisory
- http://www.informit.com/guides/content.aspx?g=security&seqNum=320ExploitNot Applicable
- http://www.securityfocus.com/archive/1/495772/100/0/threadedBroken LinkThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/30855Broken LinkExploitThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44717Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/53004Third Party AdvisoryVDB Entry
FAQ
What is CVE-2008-7109?
CVE-2008-7109 is a vulnerability with a CVSS score of 9.8 (CRITICAL). The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to bypass authorization and upload arbitrary files to the client system via a modified program that does no...
How severe is CVE-2008-7109?
CVE-2008-7109 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2008-7109?
Check the references section above for vendor advisories and patch information. Affected products include: Kyoceramita Scanner File Utility.