ZDI-CAN-22658: ZDI-24-095: Canon imageCLASS MF753Cdw Fax Job Heap-Based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Canon imageCLASS MF753Cdw printers. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2024-0244.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-22658?
ZDI-CAN-22658 has been assigned a CVSS rating of 8.8, indicating a high-severity vulnerability.
How do I fix ZDI-CAN-22658?
To remediate ZDI-CAN-22658, update your Canon imageCLASS MF753Cdw printer firmware to the latest version provided by the manufacturer.
Who can exploit ZDI-CAN-22658?
ZDI-CAN-22658 can be exploited by network-adjacent attackers without requiring authentication.
What type of vulnerability is ZDI-CAN-22658?
ZDI-CAN-22658 is a vulnerability that allows for remote code execution on affected Canon imageCLASS MF753Cdw printers.
What products are affected by ZDI-CAN-22658?
The vulnerability ZDI-CAN-22658 affects Canon imageCLASS MF753Cdw printers.