CVE-2023-0858: Medium severity canon mf642cdw vulnerability
Improper Authentication of RemoteUI of Office / Small Office Multifunction Printers and Laser Printers() which may allow an attacker on the network segment to trigger unauthorized access to the product. :Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series firmware Ver.11.04 and earlier sold in Japan. Color imageCLASS LBP660C Series/LBP 620C Series/X LBP1127C/MF740C Series/MF640C Series/X MF1127C firmware Ver.11.04 and earlier sold in US. i-SENSYS LBP660C Series/LBP620C Series/MF740C Series/MF640C Series, C1127P, C1127iF, C1127i firmware Ver.11.04 and earlier sold in Europe.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-0858?
CVE-2023-0858 is categorized as a moderate severity vulnerability due to improper authentication allowing unauthorized access on impacted devices.
How do I fix CVE-2023-0858?
To remediate CVE-2023-0858, users should update the firmware of affected Canon multifunction printers to the latest version that addresses the vulnerability.
Which devices are affected by CVE-2023-0858?
CVE-2023-0858 impacts several Canon multifunction printers and laser printers running firmware version 11.04 or earlier.
What might an attacker achieve with CVE-2023-0858?
An attacker exploiting CVE-2023-0858 could gain unauthorized access to the printer's functionality, potentially leading to data exposure or service disruption.
Is there a workaround for CVE-2023-0858 if I can't update immediately?
While the best practice is to update the firmware, temporarily isolating the affected printer from the network can help mitigate exposure until an update is applied.