peter bassill · operator
$ cve CVE-2019-13192 JSON

CVE-2019-13192

9.8
CRITICAL · CVSS 3.1 · EPSS 3.8% (pctl 90)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a heap buffer overflow vulnerability as the IPP service did not parse attribute names properly. This would allow an attacker to execute arbitrary code on the device.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS3.82% — more likely to be exploited than 90% of all CVEs
WeaknessCWE-787
On CISA KEVno
Public exploitnone known
Published2020-03-13
Last modified2026-06-17

Affected (40)

VendorProduct
brotherads-2400n
brotherads-2400n firmware
brotherads-2800w
brotherads-2800w firmware
brotherads-3000n
brotherads-3000n firmware
brotherads-3600w
brotherads-3600w firmware
brotherdcp-1610w
brotherdcp-1610w firmware
brotherdcp-1610we
brotherdcp-1610we firmware
brotherdcp-1610wr
brotherdcp-1610wr firmware
brotherdcp-1610wvb
brotherdcp-1610wvb firmware
brotherdcp-1612w
brotherdcp-1612w firmware
brotherdcp-1612we
brotherdcp-1612we firmware
brotherdcp-1612wr
brotherdcp-1612wr firmware
brotherdcp-1612wvb
brotherdcp-1612wvb firmware
brotherdcp-1615nw
brotherdcp-1615nw firmware
brotherdcp-1616nw
brotherdcp-1616nw firmware
brotherdcp-1617nw
brotherdcp-1617nw firmware
brotherdcp-1618w
brotherdcp-1618w firmware
brotherdcp-1622we
brotherdcp-1622we firmware
brotherdcp-1623we
brotherdcp-1623we firmware
brotherdcp-1623wr
brotherdcp-1623wr firmware
brotherdcp-7180dn
brotherdcp-7180dn firmware

References

→ the Explorer  ·  watch your stack  ·  NVD