CVE-2025-49797
HIGHMultiple Brother, Toshiba Tec, and Ricoh Windows Driver Installers - Privilege Escalation
Title source: llmDescription
Multiple Brother driver installers for Windows contain a privilege escalation vulnerability. If exploited, an arbitrary program may be executed with the administrative privilege. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].
References (4)
Core 4
Core References
Various Sources
https://support.brother.com/g/s/security/
Various Sources
https://www.toshibatec.com/information/20250625_01.html
Third Party Advisory
https://jvn.jp/en/vu/JVNVU91819309/
Scores
CVSS v3
7.8
EPSS
0.0015
EPSS Percentile
4.3%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-552
Status
published
Products (3)
BROTHER INDUSTRIES, LTD./Multiple driver installers for Windows
see the information provided by the vendor
Ricoh Company, Ltd./Multiple driver installers for Windows
see the information provided by the vendor
Toshiba Tec Corporation/Multiple driver installers for Windows
see the information provided by the vendor
Published
Jun 25, 2025
Tracked Since
Feb 18, 2026