VulnerabilityModified
CVE-2023-28369
Brother iPrint&Scan V6.11.2 and earlier contains an improper access control vulnerability.
LOW 3.3EPSS 0.21%
Does this matter?
Lower severity and a low EPSS score (0.21%). Track it; it rarely justifies an emergency change on its own.
Description
Brother iPrint&Scan V6.11.2 and earlier contains an improper access control vulnerability. This vulnerability may be exploited by the other app installed on the victim user's Android device, which may lead to displaying the settings and/or log information of the affected app as a print preview.
- CVSS 3.1
- 3.3 LOWCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
- EPSS
- 0.21% probability · 12th percentile
- CISA KEV
- Not listed
- Affected
- brother/iprint\&scan
- Source
- vultures@jpcert.or.jp
References
- https://faq.brother.co.jp/app/answers/detail/a_id/13468Vendor Advisory
- https://jvn.jp/en/vu/JVNVU97891206/Third Party Advisory
- https://play.google.com/store/apps/details?id=com.brother.mfc.brprintProduct
- https://support.brother.com/g/b/link.aspx?prod=group2&faqid=faq00100794_000Product
- https://faq.brother.co.jp/app/answers/detail/a_id/13468Vendor Advisory
- https://jvn.jp/en/vu/JVNVU97891206/Third Party Advisory
- https://play.google.com/store/apps/details?id=com.brother.mfc.brprintProduct
- https://support.brother.com/g/b/link.aspx?prod=group2&faqid=faq00100794_000Product
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.