9.8

CVE-2023-6232

Buffer overflow in the Address Book username process in authentication of Mobile Device Function of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.*: Satera LBP670C Series/Satera MF750C Series firmware v03.07 and earlier sold in Japan. Color imageCLASS LBP674C/Color imageCLASS X LBP1333C/Color imageCLASS MF750C Series/Color imageCLASS X MF1333C Series firmware v03.07 and earlier sold in US. i-SENSYS LBP673Cdw/C1333P/i-SENSYS MF750C Series/C1333i Series firmware v03.07 and earlier sold in Europe.

Data is provided by the National Vulnerability Database (NVD)
CanonMf755cdw Firmware Version <= 03.07
   CanonMf755cdw Version-
CanonMf753cdw Firmware Version <= 03.07
   CanonMf753cdw Version-
CanonMf751cdw Firmware Version <= 03.07
   CanonMf751cdw Version-
CanonLbp674c Firmware Version <= 03.07
   CanonLbp674c Version-
CanonLbp672c Firmware Version <= 03.07
   CanonLbp672c Version-
CanonLbp671c Firmware Version <= 03.07
   CanonLbp671c Version-
CanonMf1238 Ii Firmware Version <= 03.07
   CanonMf1238 Ii Version-
CanonMf1333c Firmware Version <= 03.07
   CanonMf1333c Version-
CanonMf1643i Ii Firmware Version <= 03.07
   CanonMf1643i Ii Version-
CanonMf1643if Ii Firmware Version <= 03.07
   CanonMf1643if Ii Version-
CanonMf275dw Firmware Version <= 03.07
   CanonMf275dw Version-
CanonMf273dw Firmware Version <= 03.07
   CanonMf273dw Version-
CanonMf272dw Firmware Version <= 03.07
   CanonMf272dw Version-
CanonMf455dw Firmware Version <= 03.07
   CanonMf455dw Version-
CanonMf453dw Firmware Version <= 03.07
   CanonMf453dw Version-
CanonMf452dw Firmware Version <= 03.07
   CanonMf452dw Version-
CanonMf451dw Firmware Version <= 03.07
   CanonMf451dw Version-
CanonLbp122dw Firmware Version <= 03.07
   CanonLbp122dw Version-
CanonLbp1238 Ii Firmware Version <= 03.07
   CanonLbp1238 Ii Version-
CanonLbp1333c Firmware Version <= 03.07
   CanonLbp1333c Version-
CanonLbp237dw Firmware Version <= 03.07
   CanonLbp237dw Version-
CanonLbp236dw Firmware Version <= 03.07
   CanonLbp236dw Version-
CanonLbp674cdw Firmware Version <= 03.07
   CanonLbp674cdw Version-
CanonI-sensys Mf754cdw Firmware Version <= 03.07
   CanonI-sensys Mf754cdw Version-
CanonI-sensys X C1333if Firmware Version <= 03.07
   CanonI-sensys X C1333if Version-
CanonI-sensys Lbp673cdw Firmware Version <= 03.07
   CanonI-sensys Lbp673cdw Version-
CanonI-sensys Mf752cdw Firmware Version <= 03.07
   CanonI-sensys Mf752cdw Version-
CanonI-sensys X C1333i Firmware Version <= 03.07
   CanonI-sensys X C1333i Version-
CanonI-sensys X C1333p Firmware Version <= 03.07
   CanonI-sensys X C1333p Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.43% 0.618
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
f98c90f0-e9bd-4fa7-911b-51993f3571fd 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.