CVE-2004-2166: High severity Canon Imagerunner C3200 vulnerability
Published Dec 31, 2004
·Updated
The print-from-email feature in the Canon ImageRUNNER (iR) 5000i and C3200 digital printer, when not using IP address range filtering, allows remote attackers to print arbitrary text without authentication via a text/plain email to TCP port 25.
Affected Software
2 affected components
Canon Imagerunner C3200
Canon Imagerunner 5000i
Event History
Dec 31, 2004
CVE Published
05:00 AM
Jul 10, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2166?
CVE-2004-2166 is considered a medium severity vulnerability that allows unauthorized printing.
2
How do I fix CVE-2004-2166?
To fix CVE-2004-2166, ensure IP address range filtering is enabled on your Canon ImageRUNNER printer.
3
What devices are affected by CVE-2004-2166?
CVE-2004-2166 affects the Canon ImageRUNNER 5000i and C3200 digital printers.
4
Can CVE-2004-2166 lead to unauthorized access?
Yes, CVE-2004-2166 allows remote attackers to print arbitrary documents without authentication.
5
What is the attack vector for CVE-2004-2166?
The attack vector for CVE-2004-2166 is through sending a text/plain email to TCP port 25 of the printer.