CVE-2008-0374
Last modified
CVE-2008-0374 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. OKI C5510MFP Printer CU H2.15, PU 01.03.01, System F/W 1.01, and Web Page 1.00 sends the configuration of the printer in cleartext, which allows remote attackers to obtain the administrative password by connecting to TCP port 5548 or 7777.. EPSS estimates a 2.08% chance of exploitation in the next 30 days.
Description
OKI C5510MFP Printer CU H2.15, PU 01.03.01, System F/W 1.01, and Web Page 1.00 sends the configuration of the printer in cleartext, which allows remote attackers to obtain the administrative password by connecting to TCP port 5548 or 7777.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Oki | C5510mfp Firmware | 1.01 |
References
- http://secunia.com/advisories/28553Broken Link, Vendor Advisory
- http://securityreason.com/securityalert/3569Third Party Advisory
- http://www.securityfocus.com/archive/1/486511/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/27339Broken Link, Third Party Advisory, VDB Entry
- http://secunia.com/advisories/28553Broken Link, Vendor Advisory
- http://securityreason.com/securityalert/3569Third Party Advisory
- http://www.securityfocus.com/archive/1/486511/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/27339Broken Link, Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-0374?
How severe is CVE-2008-0374?
How do I fix CVE-2008-0374?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2008
- CVE-2008-0368onedcu in IBM Informix Dynamic Server (IDS) 10.x before 10.0…
- CVE-2008-0369Multiple unspecified programs in IBM Informix Dynamic Server…
- CVE-2008-0370Cross-site scripting (XSS) vulnerability in dohtaccess.html …
- CVE-2008-0371Multiple SQL injection vulnerabilities in aliTalk 1.9.1.1, w…
- CVE-2008-03728e6 R3000 Internet Filter 2.0.05.33, and other versions befo…
- CVE-2008-0373Unrestricted file upload vulnerability in PHP F1 Max's File …
- CVE-2008-0375Unspecified vulnerability in OKI C5510MFP Printer CU H2.15, …
- CVE-2008-0376PHP remote file inclusion vulnerability in inc/linkbar.php i…
- CVE-2008-0377MicroNews allows remote attackers to bypass authentication a…
- CVE-2008-0378Stack-based buffer overflow in SocksCap 2.40-051231 and earl…
- CVE-2008-0379Race condition in the Enterprise Tree ActiveX control (Enter…
- CVE-2008-0380Buffer overflow in the Digital Data Communications RtspVaPgC…
Are you affected by CVE-2008-0374?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
