First published: Thu Sep 05 2019(Updated: )
The ContentProvider in the Canon PRINT jp.co.canon.bsd.ad.pixmaprint 2.5.5 application for Android does not properly restrict canon.ij.printer.capability.data data access. This allows an attacker's malicious application to obtain sensitive information including factory passwords for the administrator web interface and WPA2-PSK key.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Canon Print | =2.5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2019-14339.
The affected software is Canon PRINT jp.co.canon.bsd.ad.pixmaprint version 2.5.5 for Android.
CVE-2019-14339 has a severity rating of medium.
This vulnerability allows an attacker's malicious application to obtain sensitive information, including factory passwords for the administrator.
To fix this vulnerability, it is recommended to update the Canon PRINT application to the latest version available.