Vulnerabilities in ECOSYS M5526cdw

30-08-2019

Potential Security Impact:

XSS, CSRF, Path Traversal, Broken Access Control, Potential Buffer Overflow

VULNERABILITY SUMMARY:

Potential security vulnerabilities have been identified with KYOCERA ECOSYS M5526cdw printer. The vulnerabilities could be exploited to perform Cross-site scripting (XSS), Cross-site request forgery (CSRF), Path Traversal, Broken Access Control, or Buffer overflow attacks.

Reference Number:

CVE-2019-13195, CVE-2019-13196, CVE-2019-13197, CVE-2019-13198, CVE-2019-13199, CVE-2019-13200, CVE-2019-13201, CVE-2019-13202, CVE-2019-13203, CVE-2019-13204, CVE-2019-13205, CVE-2019-13206

Acknowledgement:

KYOCERA Document Solutions Inc. acknowledges the NCC Group for reporting these vulnerabilities as it helps our company in optimizing product security.

Affected Product and Updated Software:

Please refer to the software version below, which resolves these vulnerabilities. Please contact your support representative for information about installation of the updated software.

  • Product name:  ECOSYS M5526cdw
  • Updated Software Version:  2R7_2000.002.301

 

Cookies and your privacy

We use essential cookies to make interactions with our website easy and effective, statistical cookies for us to better understand how our website is used and marketing cookies to tailor advertising for you. You can select your cookie preferences using the 'Preferences' button below, or select 'I agree' to continue with all cookies.

Cookie preferences

We use cookies to make sure that our website is working properly or, occasionally, to provide a service on your request (such as managing your cookie preferences). These cookies are always active unless you set your browser to block them, which may prevent some parts of the website from working as expected.

These cookies allow us to measure and improve the performance of our website.

These cookies are only placed in case you give your consent. We use Marketing cookies to follow how you click and visit our websites in order to show you content based on your interests and to show you personalised advertisement. Currently you do not accept these cookies. Please check this box if you would like to.