PT-2013-5096 · Canon · Canon Mx340+8

Hostess

+1

·

Publicado

2013-06-21

·

Atualizado

2013-06-24

·

CVE-2013-4614

CVSS v2.0

2.1

Baixa

VetorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Canon MG3100 version Canon MG5300 version Canon MG6100 version Canon MP495 version Canon MX340 version Canon MX870 version Canon MX890 version Canon MX920 version Canon MX922 version
Description The issue allows physically proximate attackers to obtain sensitive information by reading the screen of an unattended workstation. This is because the English/pages MacUS/wls set content.html page on the affected Canon printers shows the Wi-Fi PSK passphrase in cleartext.
Recommendations For Canon MG3100, ensure the workstation is attended at all times to prevent unauthorized access to the screen. For Canon MG5300, ensure the workstation is attended at all times to prevent unauthorized access to the screen. For Canon MG6100, ensure the workstation is attended at all times to prevent unauthorized access to the screen. For Canon MP495, ensure the workstation is attended at all times to prevent unauthorized access to the screen. For Canon MX340, ensure the workstation is attended at all times to prevent unauthorized access to the screen. For Canon MX870, ensure the workstation is attended at all times to prevent unauthorized access to the screen. For Canon MX890, ensure the workstation is attended at all times to prevent unauthorized access to the screen. For Canon MX920, ensure the workstation is attended at all times to prevent unauthorized access to the screen. For Canon MX922, ensure the workstation is attended at all times to prevent unauthorized access to the screen.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-4614

Produtos afetados

Canon Mg3100
Canon Mg5300
Canon Mg6100
Canon Mp495
Canon Mx340
Canon Mx870
Canon Mx890
Canon Mx920
Canon Mx922