Vulnerabilities > Canon > Mp340 Printer

DATE CVE VULNERABILITY TITLE RISK
2013-06-21 CVE-2013-4615 Improper Input Validation vulnerability in Canon products
The Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX922 printers allow remote attackers to cause a denial of service (device hang) via a crafted LAN_TXT24 parameter to English/pages_MacUS/cgi_lan.cgi followed by a direct request to English/pages_MacUS/lan_set_content.html.
network
low complexity
canon CWE-20
5.0
2013-06-21 CVE-2013-4614 Credentials Management vulnerability in Canon products
English/pages_MacUS/wls_set_content.html on the Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX922 printers shows the Wi-Fi PSK passphrase in cleartext, which allows physically proximate attackers to obtain sensitive information by reading the screen of an unattended workstation.
local
low complexity
canon CWE-255
2.1
2013-06-21 CVE-2013-4613 Permissions, Privileges, and Access Controls vulnerability in Canon products
The default configuration of the administrative interface on the Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX922 printers does not require authentication, which allows remote attackers to modify the configuration by visiting the Advanced page.
network
low complexity
canon CWE-264
7.5