CVE-2020-16849
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/11/2020
Last modified:
04/12/2020
Description
An issue was discovered on Canon MF237w 06.07 devices. An "Improper Handling of Length Parameter Inconsistency" issue in the IPv4/ICMPv4 component, when handling a packet sent by an unauthenticated network attacker, may expose Sensitive Information.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:canon:mf237w_firmware:06.07:*:*:*:*:*:*:* | ||
| cpe:2.3:h:canon:mf237w:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:canon:mf113w_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:canon:mf113w:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:canon:mf212w_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:canon:mf212w:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:canon:mf216n_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:canon:mf216n:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:canon:mf217w_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:canon:mf217w:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:canon:mf226dn_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:canon:mf226dn:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:canon:mf229dw_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:canon:mf229dw:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:canon:mf231_firmware:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



