CVE-2025-49797

HIGH

Brother - Privilege Escalation

Title source: llm
STIX 2.1

Description

Multiple Brother driver installers for Windows contain a privilege escalation vulnerability. If exploited, an arbitrary program may be executed with the administrative privilege. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].

Scores

CVSS v3 7.8
EPSS 0.0007
EPSS Percentile 21.8%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-552
Status published
Products (3)
BROTHER INDUSTRIES, LTD./Multiple driver installers for Windows see the information provided by the vendor
Ricoh Company, Ltd./Multiple driver installers for Windows see the information provided by the vendor
Toshiba Tec Corporation/Multiple driver installers for Windows see the information provided by the vendor
Published Jun 25, 2025
Tracked Since Feb 18, 2026