CVE-2024-42420

HIGH

Sharp and Toshiba Tec MFPs - Buffer Overflow

Title source: llm
STIX 2.1

Description

Sharp and Toshiba Tec MFPs contain multiple Out-of-bounds Read vulnerabilities, due to improper processing of keyword search input and improper processing of SOAP messages. Crafted HTTP requests may cause affected products crashed.

Scores

CVSS v3 7.5
EPSS 0.0048
EPSS Percentile 65.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-125
Status published
Products (50)
sharp/bp-30c25_firmware
sharp/bp-30c25t_firmware
sharp/bp-30c25y_firmware
sharp/bp-30c25z_firmware
sharp/bp-30m28_firmware
sharp/bp-30m28t_firmware
sharp/bp-30m31_firmware
sharp/bp-30m31t_firmware
sharp/bp-30m35_firmware
sharp/bp-30m35t_firmware
... and 40 more
Published Oct 25, 2024
Tracked Since Feb 18, 2026