Remote Management Interface Vulnerability in Canon Production Printers
CVE-2026-1789

6.9MEDIUM

What is CVE-2026-1789?

CVE-2026-1789 is a vulnerability affecting the browser-based remote management interface of certain production printers manufactured by Canon Inc. These printers are integral to business operations, often utilized for handling tasks such as printing, scanning, and copying in both production and office environments. The vulnerability allows an administrator to potentially access sensitive information via specially crafted requests. This could compromise the confidentiality and integrity of the data managed by the affected devices, posing a risk to overall organizational security. Given the centrality of printers in the workflow of many organizations, this vulnerability could disrupt operations and expose sensitive information to unauthorized access.

Potential impact of CVE-2026-1789

  1. Unauthorized Access to Sensitive Data: The vulnerability may enable attackers to leverage crafted requests to access confidential information stored on the printer, leading to potential data breaches.

  2. Operational Disruption: Compromise of printing systems can halt workflow and disrupt business processes, affecting productivity and incurring further costs related to recovery and remediation efforts.

  3. Increased Attack Surface: By exploiting this vulnerability, threat actors could gain a foothold in the network, allowing them to pivot and target other systems or data, thereby raising the overall risk profile for the organization.

Affected Version(s)

i-SENSYS C1533iF II v16.04 or earlier

i-SENSYS MF842Cdw v16.04 or earlier

i-SENSYS X C1538 iF II v16.04 or earlier

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.