CVE-2023-25954

KYOCERA Mobile Print' v3.2.0.230119 and earlier, 'UTAX/TA MobilePrint' v3.2.0.230119 and earlier, and 'Olivetti Mobile Print' v3.2.0.230119 and earlier are vulnerable to improper intent handling. When a malicious app is installed on the victim user's Android device, the app may send an intent and direct the affected app to download malicious files or apps to the device without notification.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kyocera:mobile_print:*:*:*:*:*:android:*:*

Configuration 2 (hide)

cpe:2.3:a:triumph-adler:mobile_print:*:*:*:*:*:android:*:*

Configuration 3 (hide)

cpe:2.3:a:olivetti:mobile_print:*:*:*:*:*:android:*:*

History

07 Feb 2025, 17:15

Type Values Removed Values Added
References (MISC) https://jvn.jp/en/vu/JVNVU98434809/ - Third Party Advisory () https://jvn.jp/en/vu/JVNVU98434809/ - Third Party Advisory
References (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprintolivetti - Product () https://play.google.com/store/apps/details?id=com.kyocera.kyoprintolivetti - Product
References (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprint - Product () https://play.google.com/store/apps/details?id=com.kyocera.kyoprint - Product
References (MISC) https://www.kyoceradocumentsolutions.com/en/our-business/security/information/2023-04-11.html - Vendor Advisory () https://www.kyoceradocumentsolutions.com/en/our-business/security/information/2023-04-11.html - Vendor Advisory
References (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprinttautax - Product () https://play.google.com/store/apps/details?id=com.kyocera.kyoprinttautax - Product

21 Apr 2023, 17:54

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:a:kyocera:mobile_print:*:*:*:*:*:android:*:*
cpe:2.3:a:triumph-adler:mobile_print:*:*:*:*:*:android:*:*
cpe:2.3:a:olivetti:mobile_print:*:*:*:*:*:android:*:*
First Time Triumph-adler mobile Print
Triumph-adler
Olivetti mobile Print
Olivetti
Kyocera mobile Print
Kyocera
CWE CWE-668
References (MISC) https://www.kyoceradocumentsolutions.com/en/our-business/security/information/2023-04-11.html - (MISC) https://www.kyoceradocumentsolutions.com/en/our-business/security/information/2023-04-11.html - Vendor Advisory
References (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprint - (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprint - Product
References (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprintolivetti - (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprintolivetti - Product
References (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprinttautax - (MISC) https://play.google.com/store/apps/details?id=com.kyocera.kyoprinttautax - Product
References (MISC) https://jvn.jp/en/vu/JVNVU98434809/ - (MISC) https://jvn.jp/en/vu/JVNVU98434809/ - Third Party Advisory

13 Apr 2023, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-04-13 04:15

Updated : 2025-02-07 17:15


NVD link : CVE-2023-25954

Mitre link : CVE-2023-25954


JSON object : View

Products Affected

kyocera

  • mobile_print

olivetti

  • mobile_print

triumph-adler

  • mobile_print
CWE
CWE-668

Exposure of Resource to Wrong Sphere