
CVE-2023-34261 – Kyocera TASKalfa 4053ci 2VG_S000.002.561 Path Traversal / Denial of Service
https://notcve.org/view.php?id=CVE-2023-34261
11 Jul 2023 — Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow identification of valid user accounts via username enumeration because they lead to a "nicht einloggen" error rather than a falsch error. Las impresoras Kyocera TASKalfa 4053ci hasta 2VG_S000.002.561 permiten la identificación de cuentas de usuario válidas mediante la enumeración de nombres de usuario porque conducen a un error "nicht einloggen" en lugar de un error falso. Kyocera TASKalfa 4053ci versions 2VG_S000.002.561 and below suffers from... • https://packetstorm.news/files/id/173397 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2023-34259 – Kyocera TASKalfa 4053ci 2VG_S000.002.561 Path Traversal / Denial of Service
https://notcve.org/view.php?id=CVE-2023-34259
11 Jul 2023 — Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal to read arbitrary files on the filesystem, even files that require root privileges. NOTE: this issue exists because of an incomplete fix for CVE-2020-23575. Las impresoras Kyocera TASKalfa 4053ci hasta 2VG_S000.002.561 permiten /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal para leer archivos arbitrarios en el sistema de archivos, incluso archivos que requieren privilegios de root. NOTA: este problem... • https://packetstorm.news/files/id/173397 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2023-34260 – Kyocera TASKalfa 4053ci 2VG_S000.002.561 Path Traversal / Denial of Service
https://notcve.org/view.php?id=CVE-2023-34260
11 Jul 2023 — Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow a denial of service (service outage) via /wlmdeu%2f%2e%2e%2f%2e%2e followed by a directory reference such as %2fetc%00index.htm to try to read the /etc directory. Las impresoras Kyocera TASKalfa 4053ci hasta 2VG_S000.002.561 permiten una denegación de servicio (interrupción del servicio) a través de /wlmdeu%2f%2e%2e%2f%2e%2e seguido de una referencia de directorio como %2fetc%00index.htm para intentar leer el directorio /etc. Kyocera TASKalfa 4... • https://packetstorm.news/files/id/173397 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2020-23575
https://notcve.org/view.php?id=CVE-2020-23575
10 May 2021 — A directory traversal vulnerability exists in Kyocera Printer d-COPIA253MF plus. Successful exploitation of this vulnerability could allow an attacker to retrieve or view arbitrary files from the affected server. Se presenta una vulnerabilidad de salto de directorio en Kyocera Printer d-COPIA253MF plus. Una explotación con éxito de esta vulnerabilidad podría permitir a un atacante recuperar o visualizar archivos arbitrarios del servidor afectado • https://www.exploit-db.com/exploits/48561 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •