Olivetti's vulnerability footprint concentrates on a narrow range of multifunction device firmware and mobile printing solutions, with recurring issues centered on improper resource access controls and input-validation gaps in web-facing interfaces. Treat this as a compact vendor profile anchored to specific device product lines rather than a broad platform exposure; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Olivetti over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-25344MEDIUM An XSS issue was discovered on Olivetti d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application doesn't properly check parameters, sent in a /dvcset/sysset/set.cgi POST reques | Apr 20, 2022 | 6.1 | 22 | NO | NO |
CVE-2023-25954MEDIUM KYOCERA Mobile Print' v3.2.0.230119 and earlier, 'UTAX/TA MobilePrint' v3.2.0.230119 and earlier, and 'Olivetti Mobile Print' v3.2.0.230119 and earlier are vulnerable to improper i | Apr 13, 2023 | 5.5 | 20 | NO | NO |
CVE-2022-25342HIGH An issue was discovered on Olivetti d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application is affected by Broken Access Control. It does not properly validate requests for ac | Apr 20, 2022 | 8.1 | 20 | NO | NO |
CVE-2022-25343HIGH An issue was discovered on Olivetti d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application is affected by Denial of Service. An unauthenticated attacker, who can send POST re | Apr 20, 2022 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Olivetti.
Media articles that mention a CVE ID that affects a product developed by Olivetti — matched by CVE ID, not by vendor name.