Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal to read arbitrary files on the filesystem, even files that require root privileges. NOTE: this issue exists because of an incomplete fix for CVE-2020-23575.
References
Link Resource
https://sec-consult.com/vulnerability-lab/ Third Party Advisory
https://seclists.org/fulldisclosure/2023/Jul/15 Exploit Mailing List Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-11-03T00:00:00

Updated: 2023-11-03T03:46:51.840800

Reserved: 2023-05-31T00:00:00


Link: CVE-2023-34259

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-11-03T04:15:20.853

Modified: 2023-11-13T17:49:14.460


Link: CVE-2023-34259

JSON object: View

cve-icon Redhat Information

No data.

CWE