cbcvebase.
CVE-2023-6233
published 2024-02-06

CVE-2023-6233: Buffer overflow in SLP attribute request process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to…

PriorityP262critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.38%
71.0th percentile
Buffer overflow in SLP attribute request process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.*: Satera LBP670C Series/Satera MF750C Series firmware v03.07 and earlier sold in Japan. Color imageCLASS LBP674C/Color imageCLASS X LBP1333C/Color imageCLASS MF750C Series/Color imageCLASS X MF1333C Series firmware v03.07 and earlier sold in US. i-SENSYS LBP673Cdw/C1333P/i-SENSYS MF750C Series/C1333i Series firmware v03.07 and earlier sold in Europe.

Affected

40 ranges· showing 25
VendorProductVersion rangeFixed in
canoni-sensys_lbp673cdw_firmware<= 03.07—
canoni-sensys_mf752cdw_firmware<= 03.07—
canoni-sensys_mf754cdw_firmware<= 03.07—
canoni-sensys_x_c1333i_firmware<= 03.07—
canoni-sensys_x_c1333if_firmware<= 03.07—
canoni-sensys_x_c1333p_firmware<= 03.07—
canonlbp122dw_firmware<= 03.07—
canonlbp1238_ii_firmware<= 03.07—
canonlbp1333c_firmware<= 03.07—
canonlbp236dw_firmware<= 03.07—
canonlbp237dw_firmware<= 03.07—
canonlbp671c_firmware<= 03.07—
canonlbp672c_firmware<= 03.07—
canonlbp674c_firmware<= 03.07—
canonlbp674cdw_firmware<= 03.07—
canonmf1238_ii_firmware<= 03.07—
canonmf1333c_firmware<= 03.07—
canonmf1643i_ii_firmware<= 03.07—
canonmf1643if_ii_firmware<= 03.07—
canonmf272dw_firmware<= 03.07—
canonmf273dw_firmware<= 03.07—
canonmf275dw_firmware<= 03.07—
canonmf451dw_firmware<= 03.07—
canonmf452dw_firmware<= 03.07—
canonmf453dw_firmware<= 03.07—

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.