Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Toshibatec

First CVE: Apr 6, 2012Active for: 14 yearsTotal CVEs: 12
34.8
VTI Score
Medium

Toshibatec's vulnerability profile centers on a modestly represented portfolio of commercial multifunction printers and digital copiers, including the e-Studio series, which are widely embedded in office environments. Its disclosures cluster around web-interface and firmware-level weaknesses including cross-site scripting, authentication bypass, cross-site request forgery, and out-of-bounds reads, reflecting the attack surface of networked peripherals with embedded web servers and administrative interfaces; vulnerabilities frequently acquire public exploit code. Current exploitation activity and severity counts are shown alongside this summary.

FAUCET AI Generated
12
Total CVEs
More Total CVEs than 93% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
7.3
Avg CVSS Score
Higher Avg CVSS Score than 54% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Toshibatec over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 6, 2012
14 years ago
Most Recent CVE
Oct 25, 2024
640 days ago

Products(76 total)

Top CVEs

Signals from CVEs in this vendor scope (12 CVEs).

12 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2012-1239HIGH
The TopAccess web-based management interface on TOSHIBA TEC e-Studio multi-function peripheral (MFP) devices with firmware 30x through 302, 35x through 354, and 4xx through 421 all
Apr 6, 201210.042NOYES
CVE-2024-47406CRITICAL
Sharp and Toshiba Tec MFPs improperly process HTTP authentication requests, resulting in an authentication bypass vulnerability.
Oct 25, 20249.827NONO
CVE-2014-1990MEDIUM
Cross-site request forgery (CSRF) vulnerability in TopAccess (aka the web-based management utility) on TOSHIBA TEC e-Studio 232, 233, 282, and 283 devices allows remote attackers t
Apr 19, 20146.826NOYES
CVE-2024-47005HIGH
Sharp and Toshiba Tec MFPs provide configuration related APIs. They are expected to be called by administrative users only, but insufficiently restricted. A non-administrative use
Oct 25, 20248.122NONO
CVE-2024-42420HIGH
Sharp and Toshiba Tec MFPs contain multiple Out-of-bounds Read vulnerabilities, due to improper processing of keyword search input and improper processing of SOAP messages. Crafte
Oct 25, 20247.522NONO
CVE-2023-29984HIGH
Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an
Jul 11, 20237.522NONO
CVE-2024-45829HIGH
Sharp and Toshiba Tec MFPs provide the web page to download data, where query parameters in HTTP requests are improperly processed and resulting in an Out-of-bounds Read vulnerabil
Oct 25, 20247.521NONO
CVE-2024-43424HIGH
Sharp and Toshiba Tec MFPs improperly process HTTP request headers, resulting in an Out-of-bounds Read vulnerability. Crafted HTTP requests may cause affected products crashed.
Oct 25, 20247.521NONO
CVE-2024-47801MEDIUM
Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, resulting in a reflected cross-site scripting vulnerability. Accessing a crafted URL which points
Oct 25, 20246.118NONO
CVE-2024-47549MEDIUM
Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, which may allow contamination of unintended data to HTTP response headers. Accessing a crafted URL
Oct 25, 20246.118NONO
View all 12 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products12 CVEs
42%
50%
8%
Severity distribution among all CVEs352,727 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network10 (83.3%)
Unknown2 (16.7%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low10 (83.3%)
High0 (0.0%)
Unknown2 (16.7%)
User Interaction
None7 (58.3%)
Unknown2 (16.7%)
Required3 (25.0%)
Privileges Required
Low1 (8.3%)
High1 (8.3%)
None8 (66.7%)
Unknown2 (16.7%)

Exploit Exposure

Signals from CVEs in this vendor scope (12 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
16.7% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Toshibatec.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Toshibatec — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Toshibatec's Products

View all 2 CNAs →

Top CWEs