4.5

CVE-2021-20868

Incorrect authorization vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G00-35 and earlier, bizhub C650i/C550i/C450i G00-B6 and earlier, bizhub C360i/C300i/C250i G00-B6 and earlier, bizhub 750i/650i/550i/450i G00-37 and earlier, bizhub 360i/300i G00-33 and earlier, bizhub C287i/C257i/C227i G00-19 and earlier, bizhub 306i/266i/246i/226i G00-B6 and earlier, bizhub C759/C659 GC7-X8 and earlier, bizhub C658/C558/C458 GC7-X8 and earlier, bizhub 958/808/758 GC7-X8 and earlier, bizhub 658e/558e/458e GC7-X8 and earlier, bizhub C287/C227 GC7-X8 and earlier, bizhub 287/227 GC7-X8 and earlier, bizhub 368e/308e GC7-X8 and earlier, bizhub C368/C308/C258 GC9-X4 and earlier, bizhub 558/458/368/308 GC9-X4 and earlier, bizhub C754e/C654e GDQ-M0 and earlier, bizhub 754e/654e GDQ-M0 and earlier, bizhub C554e/C454e GDQ-M1 and earlier, bizhub C364e/C284e/C224e GDQ-M1 and earlier, bizhub 554e/454e/364e/284e/224e GDQ-M1 and earlier, bizhub C754/C654 C554/C454 GR1-M0 and earlier, bizhub C364/C284/C224 GR1-M0 and earlier, bizhub 754/654 GR1-M0 and earlier, bizhub C4050i/C3350i/C4000i/C3300i G00-B6 and earlier, bizhub C3320i G00-B6 and earlier, bizhub 4750i/4050i G00-22 and earlier, bizhub 4700i G00-22 and earlier, bizhub C3851FS/C3851/C3351 GC9-X4 and earlier, and bizhub 4752/4052 GC9-X4 and earlier) allows an attacker on the adjacent network to obtain user credentials if external server authentication is enabled via a specific SOAP message sent by an administrative user.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
KonicaminoltaBizhub C750i Firmware Version < g00-e9
   KonicaminoltaBizhub C750i Version-
KonicaminoltaBizhub C650i Firmware Version < g00-e9
   KonicaminoltaBizhub C650i Version-
KonicaminoltaBizhub C550i Firmware Version < g00-e9
   KonicaminoltaBizhub C550i Version-
KonicaminoltaBizhub C450i Firmware Version < g00-e9
   KonicaminoltaBizhub C450i Version-
KonicaminoltaBizhub C360i Firmware Version < g00-e9
   KonicaminoltaBizhub C360i Version-
KonicaminoltaBizhub C300i Firmware Version < g00-e9
   KonicaminoltaBizhub C300i Version-
KonicaminoltaBizhub C250i Firmware Version < g00-e9
   KonicaminoltaBizhub C250i Version-
KonicaminoltaBizhub 750i Firmware Version < g00-e9
   KonicaminoltaBizhub 750i Version-
KonicaminoltaBizhub 650i Firmware Version < g00-e9
   KonicaminoltaBizhub 650i Version-
KonicaminoltaBizhub 550i Firmware Version < g00-e9
   KonicaminoltaBizhub 550i Version-
KonicaminoltaBizhub 450i Firmware Version < g00-e9
   KonicaminoltaBizhub 450i Version-
KonicaminoltaBizhub 360i Firmware Version < g00-e9
   KonicaminoltaBizhub 360i Version-
KonicaminoltaBizhub 300i Firmware Version < g00-e9
   KonicaminoltaBizhub 300i Version-
KonicaminoltaBizhub C287i Firmware Version < g00-e9
   KonicaminoltaBizhub C287i Version-
KonicaminoltaBizhub C257i Firmware Version < g00-e9
   KonicaminoltaBizhub C257i Version-
KonicaminoltaBizhub C227i Firmware Version < g00-e9
   KonicaminoltaBizhub C227i Version-
KonicaminoltaBizhub 306i Firmware Version < g00-e9
   KonicaminoltaBizhub 306i Version-
KonicaminoltaBizhub 266i Firmware Version < g00-e9
   KonicaminoltaBizhub 266i Version-
KonicaminoltaBizhub 226i Firmware Version < g00-e9
   KonicaminoltaBizhub 226i Version-
KonicaminoltaBizhub C759 Firmware Version < gca-y1
   KonicaminoltaBizhub C759 Version-
KonicaminoltaBizhub C659 Firmware Version < gca-y1
   KonicaminoltaBizhub C659 Version-
KonicaminoltaBizhub C658 Firmware Version < gca-y1
   KonicaminoltaBizhub C658 Version-
KonicaminoltaBizhub C558 Firmware Version < gca-y1
   KonicaminoltaBizhub C558 Version-
KonicaminoltaBizhub C458 Firmware Version < gca-y1
   KonicaminoltaBizhub C458 Version-
KonicaminoltaBizhub 958 Firmware Version < gca-y1
   KonicaminoltaBizhub 958 Version-
KonicaminoltaBizhub 808 Firmware Version < gca-y1
   KonicaminoltaBizhub 808 Version-
KonicaminoltaBizhub 758 Firmware Version < gca-y1
   KonicaminoltaBizhub 758 Version-
KonicaminoltaBizhub 658e Firmware Version < gca-y1
   KonicaminoltaBizhub 658e Version-
KonicaminoltaBizhub 558e Firmware Version < gca-y1
   KonicaminoltaBizhub 558e Version-
KonicaminoltaBizhub 458e Firmware Version < gca-y1
   KonicaminoltaBizhub 458e Version-
KonicaminoltaBizhub C287 Firmware Version < gca-y0
   KonicaminoltaBizhub C287 Version-
KonicaminoltaBizhub C227 Firmware Version < gca-y0
   KonicaminoltaBizhub C227 Version-
KonicaminoltaBizhub 287 Firmware Version < gca-y0
   KonicaminoltaBizhub 287 Version-
KonicaminoltaBizhub 227 Firmware Version < gca-y0
   KonicaminoltaBizhub 227 Version-
KonicaminoltaBizhub 368e Firmware Version < gca-x8
   KonicaminoltaBizhub 368e Version-
KonicaminoltaBizhub 308e Firmware Version < gca-x8
   KonicaminoltaBizhub 308e Version-
KonicaminoltaBizhub C368 Firmware Version < gca-x4
   KonicaminoltaBizhub C368 Version-
KonicaminoltaBizhub C308 Firmware Version < gca-x4
   KonicaminoltaBizhub C308 Version-
KonicaminoltaBizhub C258 Firmware Version < gca-x4
   KonicaminoltaBizhub C258 Version-
KonicaminoltaBizhub 558 Firmware Version < gca-x4
   KonicaminoltaBizhub 558 Version-
KonicaminoltaBizhub 458 Firmware Version < gca-x4
   KonicaminoltaBizhub 458 Version-
KonicaminoltaBizhub 368 Firmware Version < gca-x4
   KonicaminoltaBizhub 368 Version-
KonicaminoltaBizhub 308 Firmware Version < gca-x4
   KonicaminoltaBizhub 308 Version-
KonicaminoltaBizhub C754e Firmware Version < gdr-m0
   KonicaminoltaBizhub C754e Version-
KonicaminoltaBizhub C654e Firmware Version < gdr-m0
   KonicaminoltaBizhub C654e Version-
KonicaminoltaBizhub 754e Firmware Version < gdr-m0
   KonicaminoltaBizhub 754e Version-
KonicaminoltaBizhub 654e Firmware Version < gdr-m0
   KonicaminoltaBizhub 654e Version-
KonicaminoltaBizhub C554e Firmware Version < gdr-m1
   KonicaminoltaBizhub C554e Version-
KonicaminoltaBizhub C454e Firmware Version < gdr-m1
   KonicaminoltaBizhub C454e Version-
KonicaminoltaBizhub C364e Firmware Version < gdr-m1
   KonicaminoltaBizhub C364e Version-
KonicaminoltaBizhub C284e Firmware Version < gdr-m1
   KonicaminoltaBizhub C284e Version-
KonicaminoltaBizhub C224e Firmware Version < gdr-m1
   KonicaminoltaBizhub C224e Version-
KonicaminoltaBizhub 554e Firmware Version < gdr-m1
   KonicaminoltaBizhub 554e Version-
KonicaminoltaBizhub 454e Firmware Version < gdr-m1
   KonicaminoltaBizhub 454e Version-
KonicaminoltaBizhub 364e Firmware Version < gdr-m1
   KonicaminoltaBizhub 364e Version-
KonicaminoltaBizhub 284e Firmware Version < gdr-m1
   KonicaminoltaBizhub 284e Version-
KonicaminoltaBizhub 224e Firmware Version < gdr-m1
   KonicaminoltaBizhub 224e Version-
KonicaminoltaBizhub C754 Firmware Version < gr4-m0
   KonicaminoltaBizhub C754 Version-
KonicaminoltaBizhub C654 Firmware Version < gr4-m0
   KonicaminoltaBizhub C654 Version-
KonicaminoltaBizhub C554 Firmware Version < gr4-m0
   KonicaminoltaBizhub C554 Version-
KonicaminoltaBizhub C454 Firmware Version < gr4-m0
   KonicaminoltaBizhub C454 Version-
KonicaminoltaBizhub C364 Firmware Version < gr4-m0
   KonicaminoltaBizhub C364 Version-
KonicaminoltaBizhub C284 Firmware Version < gr4-m0
   KonicaminoltaBizhub C284 Version-
KonicaminoltaBizhub C224 Firmware Version < gr4-m0
   KonicaminoltaBizhub C224 Version-
KonicaminoltaBizhub 754 Firmware Version < gr4-m0
   KonicaminoltaBizhub 754 Version-
KonicaminoltaBizhub 654 Firmware Version < gr4-m0
   KonicaminoltaBizhub 654 Version-
KonicaminoltaBizhub C4050i Firmware Version < g00-e9
   KonicaminoltaBizhub C4050i Version-
KonicaminoltaBizhub C3350i Firmware Version < g00-e9
   KonicaminoltaBizhub C3350i Version-
KonicaminoltaBizhub C4000i Firmware Version < g00-e9
   KonicaminoltaBizhub C4000i Version-
KonicaminoltaBizhub C3300i Firmware Version < g00-e9
   KonicaminoltaBizhub C3300i Version-
KonicaminoltaBizhub C3320i Firmware Version < g00-e9
   KonicaminoltaBizhub C3320i Version-
KonicaminoltaBizhub 4750i Firmware Version < g00-e9
   KonicaminoltaBizhub 4750i Version-
KonicaminoltaBizhub 4050i Firmware Version < g00-e9
   KonicaminoltaBizhub 4050i Version-
KonicaminoltaBizhub 4700i Firmware Version < g00-e9
   KonicaminoltaBizhub 4700i Version-
KonicaminoltaBizhub C3851fs Firmware Version < gca-x4
   KonicaminoltaBizhub C3851fs Version-
KonicaminoltaBizhub C3851 Firmware Version < gca-x4
   KonicaminoltaBizhub C3851 Version-
KonicaminoltaBizhub C3351 Firmware Version < gca-x4
   KonicaminoltaBizhub C3351 Version-
KonicaminoltaBizhub 4752 Firmware Version < gca-x4
   KonicaminoltaBizhub 4752 Version-
KonicaminoltaBizhub 4052 Firmware Version < gca-x4
   KonicaminoltaBizhub 4052 Version-
KonicaminoltaBizhub 246i Firmware Version < g00-e9
   KonicaminoltaBizhub 246i Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.424
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.5 0.9 3.6
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 2.3 4.4 2.9
AV:A/AC:M/Au:S/C:P/I:N/A:N
CWE-863 Incorrect Authorization

The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.