Back
CVE-2019-13197
CRITICAL
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by a buffer overflow vulnerability in the URI paths of the web application that would allow an unauthenticated attacker to perform a Denial of Service attack, crashing the device, or potentially execute arbitrary code on the device.
Published: Mar 13, 2020
Modified: Jun 17, 2026
CWE-120
CVSS Metrics
CVSSv3
Attack Vector:
NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
HIGH
Availability Impact:
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| kyocera | ecosys_m5526cdw_firmware | 2r7_2000.001.701 |
GitHub Security Advisory GHSA-rvqw-7368-wgf4
Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by a buffer...
References (2)
Risk Scores
CVSS Score
9.8 / 10
EPSS Score
2.65%
Top 15% most likely to be exploited
Threat Score
40 / 100
Data Sources
NVD
EPSS
GitHub