---
cve: "CVE-2025-49797"
severity: "HIGH"
cvss: 8.5
epss: "15%"
vendor: "RICOH COMPANY, LTD."
kev: false
exploited: false
published: "2025-06-25 10:15:22"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-08T22:46:36+02:00"
---

# CVE-2025-49797

> 8.5 HIGH

## Beschreibung

Multiple Brother driver installers for Windows contain a privilege escalation vulnerability. If exploited, an arbitrary program may be executed with the administrative privilege. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].

## CVSS-Vektor

```
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Gering | bad |
| PR Privilegien | Gering | warn |
| UI Interaktion | Keine | bad |

## Referenzen

- <https://support.brother.com/g/s/security/>
- <https://www.toshibatec.com/information/20250625_01.html>
- <https://www.ricoh.com/products/security/vulnerabilities/vul?id=ricoh-2025-000009>
- <https://jvn.jp/en/vu/JVNVU91819309/>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2025-49797) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
