Mx 3110n A
Vendor:
First CVE: Oct 25, 2024 · Active for 1 year
9
Total CVEs
More Total CVEs than 86% of tracked products
9.0
Avg CVEs / Year
Higher CVE frequency than 95% of tracked products
7.0
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Mx 3110n A over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 25, 2024
20 months ago
Most Recent CVE
Oct 25, 2024
637 days ago
CVE Severity & Scoring
Mx 3110n A9 CVEs
44%
44%
11%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network9 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None6 (66.7%)
Unknown0 (0.0%)
Required3 (33.3%)
Privileges Required
Low1 (11.1%)
High1 (11.1%)
None7 (77.8%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-47406CRITICAL Sharp and Toshiba Tec MFPs improperly process HTTP authentication requests, resulting in an authentication bypass vulnerability. | Oct 25, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-42420HIGH Sharp and Toshiba Tec MFPs contain multiple Out-of-bounds Read vulnerabilities, due to improper processing of keyword search input and improper processing of SOAP messages.
Crafte | Oct 25, 2024 | 7.5 | 22 | NO | NO |
CVE-2024-47005HIGH Sharp and Toshiba Tec MFPs provide configuration related APIs. They are expected to be called by administrative users only, but insufficiently restricted.
A non-administrative use | Oct 25, 2024 | 8.1 | 21 | NO | NO |
CVE-2024-45829HIGH Sharp and Toshiba Tec MFPs provide the web page to download data, where query parameters in HTTP requests are improperly processed and resulting in an Out-of-bounds Read vulnerabil | Oct 25, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-43424HIGH Sharp and Toshiba Tec MFPs improperly process HTTP request headers, resulting in an Out-of-bounds Read vulnerability.
Crafted HTTP requests may cause affected products crashed. | Oct 25, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-47801MEDIUM Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, resulting in a reflected cross-site scripting vulnerability.
Accessing a crafted URL which points | Oct 25, 2024 | 6.1 | 18 | NO | NO |
CVE-2024-47549MEDIUM Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, which may allow contamination of unintended data to HTTP response headers.
Accessing a crafted URL | Oct 25, 2024 | 6.1 | 18 | NO | NO |
CVE-2024-45842MEDIUM Sharp and Toshiba Tec MFPs improperly process URI data in HTTP PUT requests resulting in a path Traversal vulnerability.
Unintended internal files may be retrieved when processing | Oct 25, 2024 | 5.3 | 17 | NO | NO |
CVE-2024-48870MEDIUM Sharp and Toshiba Tec MFPs improperly validate input data in URI data registration, resulting in a stored cross-site scripting vulnerability.
If crafted input is stored by an admi | Oct 25, 2024 | 4.8 | 15 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Mx 3110n A
Top CWEs
Versions
No cataloged versions.