CVE-2012-1239

UnknownEPSS 4.72%

Last modified

CVE-2012-1239 is a vulnerability of currently unknown severity. The TopAccess web-based management interface on TOSHIBA TEC e-Studio multi-function peripheral (MFP) devices with firmware 30x through 302, 35x through 354, and 4xx through 421 allows remote attackers to bypass authentication and obtain administrative privileges via unspecified vectors.. EPSS estimates a 4.72% chance of exploitation in the next 30 days.

Description

The TopAccess web-based management interface on TOSHIBA TEC e-Studio multi-function peripheral (MFP) devices with firmware 30x through 302, 35x through 354, and 4xx through 421 allows remote attackers to bypass authentication and obtain administrative privileges via unspecified vectors.

Metrics

EPSS Probability
4.72%

90.7th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
ToshibatecE-Studio-167 With Network Printer Kit Firmwaret282cn0j421
ToshibatecE-Studio-181 With Network Printer Kit Firmwaret282cn0j421
ToshibatecE-Studio-182 With Network Printer Kit Firmwaret282cn0j421
ToshibatecE-Studio-207 With Network Printer Kit Firmwaret282cn0j421
ToshibatecE-Studio-232 Firmwaret377sy0j354
ToshibatecE-Studio-2330c Firmwaret450sy0j302
ToshibatecE-Studio-2500c Firmwaret380sy0j354
ToshibatecE-Studio-255 Firmwaret470sy0j302
ToshibatecE-Studio-255p Firmwaret470sy0j302
ToshibatecE-Studio-281c Firmwaret410sy0j354
ToshibatecE-Studio-282 Firmwaret377sy0j354
ToshibatecE-Studio-2830c Firmwaret450sy0j302
ToshibatecE-Studio-3500c Firmwaret380sy0j354
ToshibatecE-Studio-3510c Firmwaret380sy0j354
ToshibatecE-Studio-351c Firmwaret410sy0j354
ToshibatecE-Studio-352 Firmwaret364sy0j354
ToshibatecE-Studio-3520c Firmwaret450sy0j302
ToshibatecE-Studio-355 Firmwaret470sy0j302
ToshibatecE-Studio-451c Firmwaret410sy0j354
ToshibatecE-Studio-452 Firmwaret364sy0j354
ToshibatecE-Studio-4520c Firmwaret450sy0j302
ToshibatecE-Studio-455 Firmwaret470sy0j302
ToshibatecE-Studio-5520c Firmwaret430sy0j302
ToshibatecE-Studio-600 Firmwaret390sy0j354
ToshibatecE-Studio-6520c Firmwaret430sy0j302
ToshibatecE-Studio-6530c Firmwaret430sy0j302
ToshibatecE-Studio-655 Firmwaret100sy0j302
ToshibatecE-Studio-720 Firmwaret390sy0j354
ToshibatecE-Studio-755 Firmwaret100sy0j302
ToshibatecE-Studio-850 Firmwaret390sy0j354
ToshibatecE-Studio-855 Firmwaret100sy0j302
ToshibatecE-Studio-Tf-182 With Network Printer Kit Firmwaret282cn0j421
ToshibatecE-Studio-167 With Network Printer KitAll versions
ToshibatecE-Studio-181 With Network Printer KitAll versions
ToshibatecE-Studio-182 With Network Printer KitAll versions
ToshibatecE-Studio-207 With Network Printer KitAll versions
ToshibatecE-Studio-232All versions
ToshibatecE-Studio-2330cAll versions
ToshibatecE-Studio-2500cAll versions
ToshibatecE-Studio-255All versions
ToshibatecE-Studio-255pAll versions
ToshibatecE-Studio-281cAll versions
ToshibatecE-Studio-282All versions
ToshibatecE-Studio-2830cAll versions
ToshibatecE-Studio-3500cAll versions
ToshibatecE-Studio-3510cAll versions
ToshibatecE-Studio-351cAll versions
ToshibatecE-Studio-352All versions
ToshibatecE-Studio-3520cAll versions
ToshibatecE-Studio-355All versions

Showing 50 of 64 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2012-1239?
The TopAccess web-based management interface on TOSHIBA TEC e-Studio multi-function peripheral (MFP) devices with firmware 30x through 302, 35x through 354, and 4xx through 421 allows remote attackers to bypass authentication and obtain administrative privileges via unspecified vectors.
How severe is CVE-2012-1239?
Severity scoring for CVE-2012-1239 is pending analysis. The EPSS model estimates a 4.72% probability of exploitation in the next 30 days.
How do I fix CVE-2012-1239?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2012-1239?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST