CVE-2025-57797 – Fujitsu ScanSnap Manager Privilege Escalation Vulnerability

The following table lists the changes that have been made to the
CVE-2025-57797 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Aug. 27, 2025

    Action Type Old Value New Value
    Added Description Incorrect privilege assignment vulnerability exists in ScanSnap Manager installers versions prior to V6.5L61. If this vulnerability is exploited, an authenticated local attacker may escalate privileges and execute an arbitrary command.
    Added CVSS V4.0 AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
    Added CVSS V3 AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
    Added CWE CWE-266
    Added Reference https://jvn.jp/en/jp/JVN69684540/
    Added Reference https://www.pfu.ricoh.com/imaging/news/news20230606.html
    Added Reference https://www.pfu.ricoh.com/scansnap/software/sshome/requirement.html
Share the Post:

Related Posts