CVE-2008-7111
Last modified
CVE-2008-7111 is a vulnerability of currently unknown severity. The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 does not restrict the filenames or extensions of uploaded files, which makes it easier for remote attackers to execute arbitrary code or overwrite files by leveraging CVE-2008-7110 and CVE-2008-7109.. EPSS estimates a 3.37% chance of exploitation in the next 30 days.
Description
The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 does not restrict the filenames or extensions of uploaded files, which makes it easier for remote attackers to execute arbitrary code or overwrite files by leveraging CVE-2008-7110 and CVE-2008-7109.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Kyoceramita | Scanner File Utility | 3.3.0.1 |
References
- http://secunia.com/advisories/31631Vendor Advisory
- http://secunia.com/advisories/31631Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-7111?
How severe is CVE-2008-7111?
How do I fix CVE-2008-7111?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2008
- CVE-2008-7105Sophos PureMessage for Microsoft Exchange 3.0 before 3.0.2 a…
- CVE-2008-7106The installation of Sophos PureMessage for Microsoft Exchang…
- CVE-2008-7107easdrv.sys in ESET Smart Security 3.0.667.0 allows local use…
- CVE-2008-7108Multiple cross-site scripting (XSS) vulnerabilities in Carmo…
- CVE-2008-7109The Scanner File Utility (aka listener) in Kyocera Mita (KM)…9.8
- CVE-2008-7110Directory traversal vulnerability in the Scanner File Utilit…
- CVE-2008-7112The Scanner File Utility (aka listener) in Kyocera Mita (KM)…
- CVE-2008-7113The Scanner File Utility (aka listener) in Kyocera Mita (KM)…
- CVE-2008-7114SQL injection vulnerability in members_search.php in iFusion…
- CVE-2008-7115The web interface to the Belkin Wireless G router and ADSL2 …
- CVE-2008-7116SQL injection vulnerability in the admin panel (admin/) in W…
- CVE-2008-7117eledicss.php in WeBid auction script 0.5.4 allows remote att…
Are you affected by CVE-2008-7111?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
