A vulnerability in the browser-based remote management interface may allow an administrator to access sensitive information on the device via crafted requests, affecting certain production printers and office/small office multifunction printers.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Canon Inc. | MF842CDW | v16.04 or earlierCNA affected | |
| Canon Inc. | MF842CX | v16.04 or earlierCNA affected | |
| Canon Inc. | Satera MF7525F | v15.00 or earlierCNA affected | |
| Canon Inc. | Satera MF7625F | v8.12 or earlierCNA affected | |
| Canon Inc. | Satera MF7725F | v16.04 or earlierCNA affected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.