Vulnerabilities (CVE)

Filtered by vendor Kyocera Subscribe
Filtered by product Command Center Rx
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-50932 1 Kyocera 1 Command Center Rx 2026-01-30 N/A 7.5 HIGH
Kyocera Command Center RX ECOSYS M2035dn contains a directory traversal vulnerability that allows unauthenticated attackers to read sensitive system files by manipulating file paths under the /js/ path. Attackers can exploit the issue by sending requests like /js/../../../../.../etc/passwd%00.jpg (null-byte appended traversal) to access critical files such as /etc/passwd and /etc/shadow.
CVE-2019-6452 1 Kyocera 3 Command Center Rx, Taskalfa 4501i, Taskalfa 5052ci 2024-11-21 4.0 MEDIUM 8.8 HIGH
Kyocera Command Center RX TASKalfa4501i and TASKalfa5052ci allows remote attackers to abuse the Test button in the machine address book to obtain a cleartext FTP or SMB password.