Arbitrary Code Execution Vulnerability in Canon imageCLASS Printers
CVE-2022-24672
What is CVE-2022-24672?
A vulnerability exists in Canon imageCLASS MF644Cdw 10.02 printers that allows network-adjacent attackers to execute arbitrary code. The flaw arises from inadequate validation of the length of user-supplied data, enabling the exploitation of a fixed-length heap-based buffer. Notably, this vulnerability does not require authentication, allowing attackers to potentially gain elevated privileges within the context of the service account. To mitigate risks associated with this issue, Canon has released advisories and recommendations for users to secure their devices.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
imageCLASS MF644Cdw 10.02
References
CVSS V3.1
CVSS V3.0
Timeline
Vulnerability published
Vulnerability Reserved
