Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x7v7-f5h3-72gj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to authentication bypass on the page /home.jsp. An unauthenticated attacker able to connect to the device's web interface can get a copy of the documents uploaded by any users. NOTE: this is fixed in the latest version.

The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to authentication bypass on the page /home.jsp. An unauthenticated attacker able to connect to the device's web interface can get a copy of the documents uploaded by any users. NOTE: this is fixed in the latest version.

EPSS

Процентиль: 79%
0.01246
Низкий

Связанные уязвимости

CVSS3: 7.5
nvd
почти 6 лет назад

The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to authentication bypass on the page /home.jsp. An unauthenticated attacker able to connect to the device's web interface can get a copy of the documents uploaded by any users. NOTE: this is fixed in the latest version.

EPSS

Процентиль: 79%
0.01246
Низкий