Change language

Change country

Vulnerabilities in ECOSYS M5526cdw

30/08/2019

Potential Security Impact:

XSS, CSRF, Path Traversal, Broken Access Control, Potential Buffer Overflow

VULNERABILITY SUMMARY:

Potential security vulnerabilities have been identified with KYOCERA ECOSYS M5526cdw printer. The vulnerabilities could be exploited to perform Cross-site scripting (XSS), Cross-site request forgery (CSRF), Path Traversal, Broken Access Control, or Buffer overflow attacks.

Reference Number:

CVE-2019-13195, CVE-2019-13196, CVE-2019-13197, CVE-2019-13198, CVE-2019-13199, CVE-2019-13200, CVE-2019-13201, CVE-2019-13202, CVE-2019-13203, CVE-2019-13204, CVE-2019-13205, CVE-2019-13206

Acknowledgement:

KYOCERA Document Solutions Inc. acknowledges the NCC Group for reporting these vulnerabilities as it helps our company in optimizing product security.

Affected Product and Updated Software:

Please refer to the software version below, which resolves these vulnerabilities. Please contact your support representative for information about installation of the updated software.

  • Product name:  ECOSYS M5526cdw
  • Updated Software Version:  2R7_2000.002.301

Cookies and your privacy

We use essential cookies to ensure the proper functioning of our website. Statistical cookies help us to better understand how our website is used, and marketing cookies allow us to better tailor content to the visitors of our website. You can select your cookie preferences using the ‘Preferences’ button below, or select ‘Accept all cookies’ to continue with all cookies. By selecting ‘Accept all cookies’ you agree to the storing of these cookies on your device. You can refuse these cookies by selecting ‘Accept only essential cookies’, in this case you allow us to place only those cookies which are necessary for the correct display of our website on your device.

Cookie preferences

Field is required

We use cookies to make sure that our website is working properly or, occasionally, to provide a service on your request (such as managing your cookie preferences). These cookies are always active unless you set your browser to block them, which may prevent some parts of the website from working as expected.

Field is required

These cookies allow us to measure and improve the performance of our website.

Field is required

These cookies are only placed in case you give your consent. We use Marketing cookies to follow how you click and visit our websites in order to show you content based on your interests and to show you personalised advertisement. Currently you do not accept these cookies. Please check this box if you would like to.