Lucene search

K
cvelistCanonCVELIST:CVE-2023-6232
HistoryFeb 06, 2024 - 12:22 a.m.

CVE-2023-6232

2024-02-0600:22:31
CWE-787
Canon
www.cve.org
3
buffer overflow
address book
authentication
multifunction printers
mobile device function
satera lbp670c
satera mf750c
color imageclass lbp674c
color imageclass x lbp1333c
color imageclass mf750c
color imageclass x mf1333c
i-sensys lbp673cdw
c1333p
i-sensys mf750c
c1333i
firmware
japan
us
europe

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

10

Confidence

High

EPSS

0.001

Percentile

48.9%

Buffer overflow in the Address Book username process in authentication of Mobile Device Function of Office Multifunction Printers and Laser Printers() which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.: Satera LBP670C Series/Satera MF750C Series firmware v03.07 and earlier sold in Japan. Color imageCLASS LBP674C/Color imageCLASS X LBP1333C/Color imageCLASS MF750C Series/Color imageCLASS X MF1333C Series firmware v03.07 and earlier sold in US. i-SENSYS LBP673Cdw/C1333P/i-SENSYS MF750C Series/C1333i Series firmware v03.07 and earlier sold in Europe.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Satera LBP670C Series",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Satera MF750C Series",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Color imageCLASS LBP674C",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Color imageCLASS X LBP1333C",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Color imageCLASS MF750C Series",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Color imageCLASS X MF1333C Series",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "i-SENSYS LBP673Cdw",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "C1333P",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "i-SENSYS MF750C Series",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "C1333i Series",
    "vendor": "Canon Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "03.07 and earlier"
      }
    ]
  }
]

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

10

Confidence

High

EPSS

0.001

Percentile

48.9%

Related for CVELIST:CVE-2023-6232