CVE-2024-27156: Toshiba Tec Corporation Toshiba Tec E-Studio Multi-Function Peripheral Mfp
Medium severity, CVSS 6.8. EPSS: 0.4% chance of exploitation in the next 30 days.
The session cookies, used for authentication, are stored in clear-text logs. An attacker can retrieve authentication sessions. A remote attacker can retrieve the credentials and bypass the authentication mechanism. As for the affected products/models/versions, see the reference URL.
Affected products
- Toshiba Tec Corporation Toshiba Tec E-Studio Multi-Function Peripheral Mfp
Published 2024-06-14. Last modified 2026-06-17.