Kyocera Mita's vulnerability footprint centers on its multifunction printer and imaging device product line, with observed issues concentrated in the FS-118MFP and related office equipment. The durable signal is path-traversal weakness in device firmware and file-handling components, a characteristic vulnerability class in networked peripherals with complex file-system interfaces. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Kyocera Mita over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-7110HIGH Directory traversal vulnerability in the Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to upload files to arbitrary locations via a .. (d | Aug 28, 2009 | 7.8 | 29 | NO | YES |
CVE-2008-7109CRITICAL The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to bypass authorization and upload arbitrary files to the client system via a modified | Aug 28, 2009 | 9.8 | 25 | NO | NO |
CVE-2008-7111HIGH The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 does not restrict the filenames or extensions of uploaded files, which makes it easier for remote attackers to | Aug 28, 2009 | 9.3 | 24 | NO | NO |
CVE-2008-4040HIGH Directory traversal vulnerability in the Kyocera Command Center in Kyocera FS-118MFP allows remote attackers to read arbitrary files via a .. (dot dot) in the URI. | Sep 11, 2008 | 7.8 | 20 | NO | NO |
CVE-2008-7113MEDIUM The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 uses a small space of predictable user identification numbers for access control, which allows remote attackers | Aug 28, 2009 | 6.4 | 17 | NO | NO |
CVE-2008-7112MEDIUM The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 allows remote attackers to cause a denial of service (hang or crash) via invalid field length values in a malfo | Aug 28, 2009 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kyocera Mita.
Media articles that mention a CVE ID that affects a product developed by Kyocera Mita — matched by CVE ID, not by vendor name.