5
CVSSv2

CVE-2020-26508

Published: 16/11/2020 Updated: 01/12/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The WebTools component on Canon Oce ColorWave 3500 5.1.1.0 devices allows malicious users to retrieve stored SMB credentials via the export feature, even though these are intentionally inaccessible in the UI.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

canon oce_colorwave_3500_firmware 5.1.1.0