CVE-2020-16849: High severity canon mf237w firmware vulnerability
An issue was discovered on Canon MF237w 06.07 devices. An "Improper Handling of Length Parameter Inconsistency" issue in the IPv4/ICMPv4 component, when handling a packet sent by an unauthenticated network attacker, may expose Sensitive Information.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-16849?
CVE-2020-16849 is an "Improper Handling of Length Parameter Inconsistency" vulnerability discovered on Canon MF237w 06.07 devices.
What is the severity of CVE-2020-16849?
The severity of CVE-2020-16849 is high with a CVSS score of 7.5.
Which devices are affected by CVE-2020-16849?
Canon MF237w devices with firmware version 06.07 are affected by CVE-2020-16849.
How can an attacker exploit CVE-2020-16849?
An unauthenticated network attacker can exploit CVE-2020-16849 by sending a malicious packet to the IPv4/ICMPv4 component of the affected device.
Is there a fix for CVE-2020-16849?
It is recommended to update the firmware of the Canon MF237w devices to a version that includes a fix for CVE-2020-16849.