CNNVD-202506-3140 Information

CNNVD ID

CNNVD-202506-3140

CVE-2024-51980

  • CNNVD Published: 2025-06-25

Description (Chinese)

Brother Industries HL-L8360CDW等都是日本Brother Industries公司的产品。Brother Industries HL-L8360CDW是一款多功能打印机。Brother Industries debut web server是一款 web 服务器。Brother Industries Web Based Management是一款 Web 管理软件。 Brother Industries多款产品存在安全漏洞,该漏洞源于未经验证的攻击者可通过WS-Addressing ReplyTo元素执行有限的服务端请求伪造。

Description (English)

Other products, such as Brother Industries HL-L8360 CDW, are those of the Japanese company Brother Industries. Brother Industries HL-L8360CDW is a multi-purpose printer. Brother Industries debut web server is a web server. Brother Industries Web Based Management is a Web management software. There is a safety gap in the multi-products of Brother Industries, which stems from a limited service-end request by uncertified assailants through WS-Addressing ReplyTo elements.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

兄弟工业

Published

2025-06-25

Last Modified

2026-02-24

References

https://support.brother.com/g/b/link.aspx?prod=group2&faqid=faq00100848_000 https://www.konicaminolta.com/global-en/security/advisory/pdf/km-2025-0001.pdf https://support.brother.com/g/b/link.aspx?prod=lmgroup1&faqid=faqp00100620_000 https://support.brother.com/g/b/link.aspx?prod=group2&faqid=faq00100846_000 https://www.toshibatec.com/information/20250625_02.html https://www.rapid7.com/blog/post/multiple-brother-devices-multiple-vulnerabilities-fixed https://www.fujifilm.com/fbglobal/eng/company/news/notice/2025/0625_announce.html https://github.com/sfewer-r7/BrotherVulnerabilities https://www.ricoh.com/products/security/vulnerabilities/vul?id=ricoh-2025-000007 https://assets.contentstack.io/v3/assets/blte4f029e766e6b253/blt6495b3c6adf2867f/685aa980a26c5e2b1026969c/vulnerability-disclosure-whitepaper.pdf https://nvd.nist.gov/vuln/detail/CVE-2024-51980

Patch

https://support.brother.com/g/b/link.aspx?prod=group2&faqid=faq00100846_000

Share on: