« Back to list

Canon

Canon Mf452dw Firmware: vulnerabilities and CVEs

Canon Mf452dw Firmware has 19 published vulnerabilities, 7 of them in the last 12 months. 17 are rated critical and 0 are listed by CISA as actively exploited.

CVEs19
Last 12 months7
Critical17
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2025-14237Critical (9.3)0.99%—Jan 16, 2026
Buffer overflow in XPS font parse processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2025-14236Critical (9.3)0.92%—Jan 16, 2026
Buffer overflow in Address Book attribute tag processing on Small Office Multifunction Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute…
CVE-2025-14235Critical (9.3)0.92%—Jan 16, 2026
Buffer overflow in XPS font fpgm data processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2025-14234Critical (9.3)0.92%—Jan 16, 2026
Buffer overflow in CPCA list processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute…
CVE-2025-14233Critical (9.3)0.84%—Jan 16, 2026
Invalid free in CPCA file deletion processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2025-14232Critical (9.3)0.92%—Jan 16, 2026
Buffer overflow in XML processing of XPS file in Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2025-14231Critical (9.3)0.92%—Jan 16, 2026
Buffer overflow in print job processing by WSD on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2024-12649Critical (9.8)1.2%—Jan 28, 2025
Buffer overflow in XPS data font processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2024-12648Critical (9.8)1.2%—Jan 28, 2025
Buffer overflow in TIFF data EXIF tag processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2024-12647Critical (9.8)1.2%—Jan 28, 2025
Buffer overflow in CPCA font download processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2023-6234Critical (9.8)1.4%—Feb 6, 2024
Buffer overflow in CPCA Color LUT Resource Download process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or…
CVE-2023-6233Critical (9.8)1.4%—Feb 6, 2024
Buffer overflow in SLP attribute request process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute…
CVE-2023-6232Critical (9.8)1.5%—Feb 6, 2024
Buffer overflow in the Address Book username process in authentication of Mobile Device Function of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the…
CVE-2023-6231Critical (9.8)1.4%—Feb 6, 2024
Buffer overflow in WSD probe request process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute…
CVE-2023-6230Critical (9.8)1.5%—Feb 6, 2024
Buffer overflow in the Address Book password process in authentication of Mobile Device Function of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the…
CVE-2023-6229Critical (9.8)1.4%—Feb 6, 2024
Buffer overflow in CPCA PDL Resource Download process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to…
CVE-2022-24674High (8.8)1.1%—Mar 28, 2023
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The…
CVE-2022-24673Critical (9.8)2.6%—Mar 28, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The specific flaw…
CVE-2022-24672High (8.8)1.2%—Mar 28, 2023
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1190 Exploit Public-Facing Application10
  2. T1059 Command and Scripting Interpreter9

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Canon