CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Search Vulnerabilities

 Software

Searching vulnerabilities affecting “brother”

15 vulnerabilities found for “brother”

CVE-2020-36929
HIGH7.8

Brother BRPrint Auditor 3.0.7 contains an unquoted service path vulnerability in its Windows service configurations that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted file paths in BrAuSvc and BRPA_Agent services to inject malicious executables and escalate privileges on the system.

brother / brprint_auditor
Local
Published Jan 16, 2026
CVE-2020-36928
HIGH7.8

Brother BRAgent 1.38 contains an unquoted service path vulnerability in the WBA_Agent_Client service running with LocalSystem privileges. Attackers can exploit the unquoted path in C:\Program Files (x86)\Brother\BRAgent\ to inject and execute malicious code with elevated system permissions.

brother / bragent
Local
Published Jan 16, 2026
CVE-2023-51654
MEDIUM5.5

Improper link resolution before file access ('Link Following') issue exists in iPrint&Scan Desktop for Windows versions 11.0.0 and earlier. A symlink attack by a malicious user may cause a Denial-of-service (DoS) condition on the PC.

brother / iprint\&scan
Local
Published Dec 26, 2023
CVE-2023-29984
HIGH7.5

Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service (DoS) condition. As for the affected products/models/versions, see the detailed information provided by each vendor.

fujifilm / docuprint_m265_z_firmware+216
Network
Published Jul 11, 2023
CVE-2023-28369
LOW3.3

Brother iPrint&Scan V6.11.2 and earlier contains an improper access control vulnerability. This vulnerability may be exploited by the other app installed on the victim user's Android device, which may lead to displaying the settings and/or log information of the affected app as a print preview.

brother / iprint\&scan
Local
Published May 18, 2023
CVE-2019-13194
HIGH7.5

Some Brother printers (such as the HL-L8360CDW v1.20) were affected by different information disclosure vulnerabilities that provided sensitive information to an unauthenticated user who visits a specific URL.

brother / ads-2400n_firmware+304
Network
Published Mar 13, 2020
CVE-2019-13193
HIGH8.8

Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a stack buffer overflow vulnerability as the web server did not parse the cookie value properly. This would allow an attacker to execute arbitrary code on the device.

brother / hl-l2371dn_firmware+304
Network
Published Mar 13, 2020
CVE-2019-13192
CRITICAL9.8

Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a heap buffer overflow vulnerability as the IPP service did not parse attribute names properly. This would allow an attacker to execute arbitrary code on the device.

brother / dcp-t510w_firmware+304
Network
Published Mar 13, 2020
CVE-2013-2675
MEDIUM6.5

Brother MFC-9970CDW 1.10 devices with Firmware L contain a Frameable response (Clickjacking) vulnerability which could allow remote attackers to obtain sensitive information.

brother / mfc-9970cdw_firmware
Network
Published Feb 5, 2020
CVE-2013-2676
HIGH7.5

Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresses and other sensitive information.

brother / mfc-9970cdw_firmware
Network
Published Feb 4, 2020
CVE-2013-2672
HIGH7.5

Brother MFC-9970CDW devices with firmware 0D allow cleartext submission of passwords.

brother / mfc-9970cdw_firmware
Network
Published Feb 3, 2020
CVE-2013-2674
HIGH7.5

Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling of HTTP referrer headers.

brother / mfc-9970cdw_firmware
Network
Published Feb 3, 2020
CVE-2013-2673
MEDIUM6.8

Brother MFC-9970CDW 1.10 firmware L devices contain a security bypass vulnerability which allows physically proximate attackers to gain unauthorized access.

brother / mfc-9970cdw_firmware
Physical
Published Feb 3, 2020
CVE-2019-13143
CRITICAL9.8

An HTTP parameter pollution issue was discovered on Shenzhen Dragon Brothers Fingerprint Bluetooth Round Padlock FB50 2.3. With the user ID, user name, and the lock's MAC address, anyone can unbind the existing owner of the lock, and bind themselves instead. This leads to complete takeover of the lock. The user ID, name, and MAC address are trivially obtained from APIs found within the Android or iOS application. With only the MAC address of the lock, any attacker can transfer ownership of the lock from the current user, over to the attacker's account. Thus rendering the lock completely inaccessible to the current user.

shenzhen_dragon_brothers / fb50_firmware
Network
Published Aug 6, 2019
CVE-2018-11581
MEDIUM4.8

Cross-site scripting (XSS) vulnerability on Brother HL series printers allows remote attackers to inject arbitrary web script or HTML via the url parameter to etc/loginerror.html.

brother / hl-l2340d_firmware+1
Network
Published Jun 1, 2018