Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · toshibatec

toshibatec

· 1 Critical

Total CVEs

12

Critical

1

Products

76

Search All CVEs →

12

Products (76)

e-studio12089 CVEse-studio1208 firmware9 CVEse-studio9089 CVEse-studio908 firmware9 CVEse-studio10589 CVEse-studio1058 firmware9 CVEse-studio-2322 CVEse-studio-2822 CVEse-studio-232 firmware1 CVEse-studio-2331 CVEse-studio-2330c1 CVEse-studio-2330c firmware1 CVEse-studio-2500c1 CVEse-studio-2500c firmware1 CVEse-studio-2551 CVEse-studio-255 firmware1 CVEse-studio-255p1 CVEse-studio-255p firmware1 CVEse-studio-281c1 CVEse-studio-281c firmware1 CVEse-studio-282 firmware1 CVEse-studio-2831 CVEse-studio-2830c1 CVEse-studio-2830c firmware1 CVEse-studio-3500c1 CVEse-studio-3500c firmware1 CVEse-studio-3510c1 CVEse-studio-3510c firmware1 CVEse-studio-351c1 CVEse-studio-351c firmware1 CVEse-studio-3521 CVEse-studio-3520c1 CVEse-studio-3520c firmware1 CVEse-studio-352 firmware1 CVEse-studio-3551 CVEse-studio-355 firmware1 CVEse-studio-451c1 CVEse-studio-451c firmware1 CVEse-studio-4521 CVEse-studio-4520c1 CVEse-studio-4520c firmware1 CVEse-studio-452 firmware1 CVEse-studio-4551 CVEse-studio-455 firmware1 CVEse-studio-5520c1 CVEse-studio-5520c firmware1 CVEse-studio-6001 CVEse-studio-600 firmware1 CVEse-studio-6520c1 CVEse-studio-6520c firmware1 CVEse-studio-6530c1 CVEse-studio-6530c firmware1 CVEse-studio-6551 CVEse-studio-655 firmware1 CVEse-studio-7201 CVEse-studio-720 firmware1 CVEse-studio-7551 CVEse-studio-755 firmware1 CVEse-studio-8501 CVEse-studio-850 firmware1 CVEse-studio-8551 CVEse-studio-855 firmware1 CVEse-studio-tf-182 with network printer kit1 CVEse-studio-tf-182 with network printer kit firmware1 CVEse-studio 301dn1 CVEse-studio 301dn firmware1 CVEse-studio 302dnf1 CVEse-studio-167 with network printer kit1 CVEse-studio 302dnf firmware1 CVEse-studio-167 with network printer kit firmware1 CVEse-studio-181 with network printer kit1 CVEse-studio-181 with network printer kit firmware1 CVEse-studio-182 with network printer kit1 CVEse-studio-182 with network printer kit firmware1 CVEse-studio-207 with network printer kit1 CVEse-studio-207 with network printer kit firmware1 CVEs

Recent Vulnerabilities

View all 12
CVE-2024-48870MEDIUM 6.2

Sharp and Toshiba Tec MFPs improperly validate input data in URI data registration, resulting in a stored cross-site scripting vulnerability. If crafted input is stored by an administrative user, malicious script may be executed on the web browsers of other victim users.

CVE-2024-47801HIGH 7.4

Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, resulting in a reflected cross-site scripting vulnerability. Accessing a crafted URL which points to an affected product may cause malicious script executed on the web browser.

CVE-2024-47549HIGH 7.4

Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, which may allow contamination of unintended data to HTTP response headers. Accessing a crafted URL which points to an affected product may cause malicious script executed on the web browser.

CVE-2024-47406CRITICAL 9.1

Sharp and Toshiba Tec MFPs improperly process HTTP authentication requests, resulting in an authentication bypass vulnerability.

CVE-2024-47005HIGH 8.1

Sharp and Toshiba Tec MFPs provide configuration related APIs. They are expected to be called by administrative users only, but insufficiently restricted. A non-administrative user may execute some configuration APIs.

CVE-2024-45842MEDIUM 5.3

Sharp and Toshiba Tec MFPs improperly process URI data in HTTP PUT requests resulting in a path Traversal vulnerability. Unintended internal files may be retrieved when processing crafted HTTP requests.

CVE-2024-45829MEDIUM 4.9

Sharp and Toshiba Tec MFPs provide the web page to download data, where query parameters in HTTP requests are improperly processed and resulting in an Out-of-bounds Read vulnerability. Crafted HTTP requests may cause affected products crashed.

CVE-2024-43424HIGH 7.5

Sharp and Toshiba Tec MFPs improperly process HTTP request headers, resulting in an Out-of-bounds Read vulnerability. Crafted HTTP requests may cause affected products crashed.

CVE-2024-42420HIGH 7.5

Sharp and Toshiba Tec MFPs contain multiple Out-of-bounds Read vulnerabilities, due to improper processing of keyword search input and improper processing of SOAP messages. Crafted HTTP requests may cause affected products crashed.

CVE-2023-29984HIGH 7.5

Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service (DoS) condition. As for the affected products/models/versions, see the detailed information provided by each vendor.

CVE-2014-1990

Cross-site request forgery (CSRF) vulnerability in TopAccess (aka the web-based management utility) on TOSHIBA TEC e-Studio 232, 233, 282, and 283 devices allows remote attackers to hijack the authentication of administrators for requests that change passwords.

CVE-2012-1239

The TopAccess web-based management interface on TOSHIBA TEC e-Studio multi-function peripheral (MFP) devices with firmware 30x through 302, 35x through 354, and 4xx through 421 allows remote attackers to bypass authentication and obtain administrative privileges via unspecified vectors.