<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 16:25:24 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-217323</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-217323</link>
      <description>EUVD-2026-217323</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-217323</guid>
    </item>
    <item>
      <title>fkie_cve-2024-27163</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-27163</link>
      <description>&lt;p&gt;Toshiba printers will display the password of the admin user in clear-text and additional passwords when sending 2 specific HTTP requests to the internal API. An attacker stealing the cookie of an admin or abusing a XSS vulnerability can recover this password in clear-text and compromise the printer. This vulnerability can be executed in combination with other vulnerabilities and  difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the &amp;#34;Base Score&amp;#34; of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point.
 https://www.toshibatec.com/contacts/products/ 
As for the affected products/models/versions, see the reference URL.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Toshiba printers will display the password of the admin user in clear-text and additional passwords when sending 2 specific HTTP requests to the internal API. An attacker stealing the cookie of an admin or abusing a XSS vulnerability can recover this password in clear-text and compromise the printer. This vulnerability can be executed in combination with other vulnerabilities and  difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the &amp;#34;Base Score&amp;#34; of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point.
 https://www.toshibatec.com/contacts/products/ 
As for the affected products/models/versions, see the reference URL.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-27163</guid>
    </item>
    <item>
      <title>GHSA-wjcq-p2hh-4gr7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wjcq-p2hh-4gr7</link>
      <description>&lt;p&gt;Toshiba printers will display the password of the admin user in clear-text and additional passwords when sending 2 specific HTTP requests to the internal API. An attacker stealing the cookie of an admin or abusing a XSS vulnerability can recover this password in clear-text and compromise the printer. This vulnerability can be executed in combination with other vulnerabilities and  difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the &amp;#34;Base Score&amp;#34; of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point.
 https://www.toshibatec.com/contacts/products/ 
As for the affected products/models/versions, see the reference URL.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Toshiba printers will display the password of the admin user in clear-text and additional passwords when sending 2 specific HTTP requests to the internal API. An attacker stealing the cookie of an admin or abusing a XSS vulnerability can recover this password in clear-text and compromise the printer. This vulnerability can be executed in combination with other vulnerabilities and  difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the &amp;#34;Base Score&amp;#34; of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point.
 https://www.toshibatec.com/contacts/products/ 
As for the affected products/models/versions, see the reference URL.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wjcq-p2hh-4gr7</guid>
    </item>
    <item>
      <title>gsd-2024-27163</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-27163</link>
      <description>gsd-2024-27163</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-27163</guid>
    </item>
    <item>
      <title>jvndb-2024-003539</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2024-003539</link>
      <description>&lt;p&gt;MFPs (multifunction printers) provided by Toshiba Tec Corporation and Oki Electric Industry Co., Ltd. contain multiple vulnerabilities listed below.&#13;
&amp;lt;ul&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Improper Restriction of Recursive Entity References in DTDs (&amp;amp;#39;XML Entity Expansion&amp;amp;#39;) (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/776&amp;#34;&amp;gt;CWE-776&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27141, CVE-2024-27142&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Execution with Unnecessary Privileges (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/250&amp;#34;&amp;gt;CWE-250&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27143, CVE-2024-27146, CVE-2024-27147, CVE-2024-3498&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Incorrect Default Permissions (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/276&amp;#34;&amp;gt;CWE-276&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27148, CVE-2024-27149, CVE-2024-27150, CVE-2024-27151, CVE-2024-27152, CVE-2024-27153, CVE-2024-27155, CVE-2024-27167, CVE-2024-27171&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Path Traversal (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/22&amp;#34;&amp;gt;CWE-22&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27144, CVE-2024-27145, CVE-2024-27173, CVE-2024-27174, CVE-2024-27176, CVE-2024-27177, CVE-2024-27178&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Insertion of Sensitive Information into Log File (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/532&amp;#34;&amp;gt;CWE-532&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27154, CVE-2024-27156, CVE-2024-27157&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Plaintext Storage of a Password (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/256&amp;#34;&amp;gt;CWE-256&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27166&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Debug Messages Revealing Unnecessary Information (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/1295&amp;#34;&amp;gt;CWE-1295&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27179&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MFPs (multifunction printers) provided by Toshiba Tec Corporation and Oki Electric Industry Co., Ltd. contain multiple vulnerabilities listed below.&#13;
&amp;lt;ul&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Improper Restriction of Recursive Entity References in DTDs (&amp;amp;#39;XML Entity Expansion&amp;amp;#39;) (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/776&amp;#34;&amp;gt;CWE-776&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27141, CVE-2024-27142&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Execution with Unnecessary Privileges (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/250&amp;#34;&amp;gt;CWE-250&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27143, CVE-2024-27146, CVE-2024-27147, CVE-2024-3498&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Incorrect Default Permissions (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/276&amp;#34;&amp;gt;CWE-276&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27148, CVE-2024-27149, CVE-2024-27150, CVE-2024-27151, CVE-2024-27152, CVE-2024-27153, CVE-2024-27155, CVE-2024-27167, CVE-2024-27171&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Path Traversal (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/22&amp;#34;&amp;gt;CWE-22&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27144, CVE-2024-27145, CVE-2024-27173, CVE-2024-27174, CVE-2024-27176, CVE-2024-27177, CVE-2024-27178&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Insertion of Sensitive Information into Log File (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/532&amp;#34;&amp;gt;CWE-532&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27154, CVE-2024-27156, CVE-2024-27157&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Plaintext Storage of a Password (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/256&amp;#34;&amp;gt;CWE-256&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27166&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Debug Messages Revealing Unnecessary Information (&amp;lt;a href=&amp;#34;https://cwe.mitre.org/data/definitions/1295&amp;#34;&amp;gt;CWE-1295&amp;lt;/a&amp;gt;) &amp;lt;/b&amp;gt;- CVE-2024-27179&amp;lt;/li&amp;gt;&#13;
	&amp;lt;li…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2024-003539</guid>
    </item>
  </channel>
</rss>
