cve/2024/CVE-2024-36248.md

20 lines
1.1 KiB
Markdown
Raw Permalink Normal View History

2025-09-29 16:08:36 +00:00
### [CVE-2024-36248](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-36248)
![](https://img.shields.io/static/v1?label=Product&message=Multiple%20MFPs%20(multifunction%20printers)&color=blue)
2025-09-29 21:09:30 +02:00
![](https://img.shields.io/static/v1?label=Version&message=See%20the%20information%20provided%20by%20Sharp%20Corporation%20listed%20under%20%5BReferences%5D%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=See%20the%20information%20provided%20by%20Toshiba%20Tec%20Corporation%20listed%20under%20%5BReferences%5D%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Use%20of%20hard-coded%20credentials&color=brightgreen)
2025-09-29 16:08:36 +00:00
### Description
API keys for some cloud services are hardcoded in the "main" binary. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].
### POC
#### Reference
2025-09-29 21:09:30 +02:00
- https://jvn.jp/en/vu/JVNVU93051062/
2025-09-29 16:08:36 +00:00
- https://pierrekim.github.io/blog/2024-06-27-sharp-mfp-17-vulnerabilities.html
#### Github
No PoCs found on GitHub currently.