Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2012-1239


The TopAccess web-based management interface on TOSHIBA TEC e-Studio multi-function peripheral (MFP) devices with firmware 30x through 302, 35x through 354, and 4xx through 421 allows remote attackers to bypass authentication and obtain administrative privileges via unspecified vectors.


Security Impact Summary

CVE-2012-1239 is a security vulnerability that . Impacting 64 products from toshibatec, from toshibatec, from toshibatec and 61 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

Documented in 2012, this vulnerability occurred amid the cloud computing expansion era, where traditional network perimeter security models were being reevaluated. Organizations were transitioning from isolated infrastructure to interconnected systems, creating new attack surfaces that vulnerabilities like this could exploit.


Published

2012-04-06T19:55:01.480

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 10.0 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-264

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application toshibatec e-studio-167_with_network_printer_kit_firmware t282cn0j421 Yes
Application toshibatec e-studio-181_with_network_printer_kit_firmware t282cn0j421 Yes
Application toshibatec e-studio-182_with_network_printer_kit_firmware t282cn0j421 Yes
Application toshibatec e-studio-207_with_network_printer_kit_firmware t282cn0j421 Yes
Application toshibatec e-studio-232_firmware t377sy0j354 Yes
Application toshibatec e-studio-2330c_firmware t450sy0j302 Yes
Application toshibatec e-studio-2500c_firmware t380sy0j354 Yes
Application toshibatec e-studio-255_firmware t470sy0j302 Yes
Application toshibatec e-studio-255p_firmware t470sy0j302 Yes
Application toshibatec e-studio-281c_firmware t410sy0j354 Yes
Application toshibatec e-studio-282_firmware t377sy0j354 Yes
Application toshibatec e-studio-2830c_firmware t450sy0j302 Yes
Application toshibatec e-studio-3500c_firmware t380sy0j354 Yes
Application toshibatec e-studio-3510c_firmware t380sy0j354 Yes
Application toshibatec e-studio-351c_firmware t410sy0j354 Yes
Application toshibatec e-studio-352_firmware t364sy0j354 Yes
Application toshibatec e-studio-3520c_firmware t450sy0j302 Yes
Application toshibatec e-studio-355_firmware t470sy0j302 Yes
Application toshibatec e-studio-451c_firmware t410sy0j354 Yes
Application toshibatec e-studio-452_firmware t364sy0j354 Yes
Application toshibatec e-studio-4520c_firmware t450sy0j302 Yes
Application toshibatec e-studio-455_firmware t470sy0j302 Yes
Application toshibatec e-studio-5520c_firmware t430sy0j302 Yes
Application toshibatec e-studio-600_firmware t390sy0j354 Yes
Application toshibatec e-studio-6520c_firmware t430sy0j302 Yes
Application toshibatec e-studio-6530c_firmware t430sy0j302 Yes
Application toshibatec e-studio-655_firmware t100sy0j302 Yes
Application toshibatec e-studio-720_firmware t390sy0j354 Yes
Application toshibatec e-studio-755_firmware t100sy0j302 Yes
Application toshibatec e-studio-850_firmware t390sy0j354 Yes
Application toshibatec e-studio-855_firmware t100sy0j302 Yes
Application toshibatec e-studio-tf-182_with_network_printer_kit_firmware t282cn0j421 Yes
Hardware toshibatec e-studio-167_with_network_printer_kit - Yes
Hardware toshibatec e-studio-181_with_network_printer_kit - Yes
Hardware toshibatec e-studio-182_with_network_printer_kit - Yes
Hardware toshibatec e-studio-207_with_network_printer_kit - Yes
Hardware toshibatec e-studio-232 - Yes
Hardware toshibatec e-studio-2330c - Yes
Hardware toshibatec e-studio-2500c - Yes
Hardware toshibatec e-studio-255 - Yes
Hardware toshibatec e-studio-255p - Yes
Hardware toshibatec e-studio-281c - Yes
Hardware toshibatec e-studio-282 - Yes
Hardware toshibatec e-studio-2830c - Yes
Hardware toshibatec e-studio-3500c - Yes
Hardware toshibatec e-studio-3510c - Yes
Hardware toshibatec e-studio-351c - Yes
Hardware toshibatec e-studio-352 - Yes
Hardware toshibatec e-studio-3520c - Yes
Hardware toshibatec e-studio-355 - Yes
Hardware toshibatec e-studio-451c - Yes
Hardware toshibatec e-studio-452 - Yes
Hardware toshibatec e-studio-4520c - Yes
Hardware toshibatec e-studio-455 - Yes
Hardware toshibatec e-studio-5520c - Yes
Hardware toshibatec e-studio-600 - Yes
Hardware toshibatec e-studio-6520c - Yes
Hardware toshibatec e-studio-6530c - Yes
Hardware toshibatec e-studio-655 - Yes
Hardware toshibatec e-studio-720 - Yes
Hardware toshibatec e-studio-755 - Yes
Hardware toshibatec e-studio-850 - Yes
Hardware toshibatec e-studio-855 - Yes
Hardware toshibatec e-studio-tf-182_with_network_printer_kit - Yes

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For toshibatec's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.