CVE Vulnerabilities

CVE-2023-1763

Missing Password Field Masking

Published: May 17, 2023 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Canon IJ Network Tool/Ver.4.7.5 and earlier (supported OS: OS X 10.9.5-macOS 13),IJ Network Tool/Ver.4.7.3 and earlier (supported OS: OS X 10.7.5-OS X 10.8) allows an attacker to acquire sensitive information on the Wi-Fi connection setup of the printer from the software.

Weakness

The product does not mask passwords during entry, increasing the potential for attackers to observe and capture passwords.

Affected Software

Name Vendor Start Version End Version
Ij_network_tool Canon * 4.7.3 (including)

Potential Mitigations

References