Canon
Canon Mf452dw Firmware: vulnerabilities and CVEs
Canon Mf452dw Firmware has 19 published vulnerabilities, 7 of them in the last 12 months. 17 are rated critical and 0 are listed by CISA as actively exploited.
CVEs19
Last 12 months7
Critical17
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-14237 | Critical (9.3) | 0.99% | — | Jan 16, 2026 | Buffer overflow in XPS font parse processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2025-14236 | Critical (9.3) | 0.92% | — | Jan 16, 2026 | Buffer overflow in Address Book attribute tag processing on Small Office Multifunction Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute… |
| CVE-2025-14235 | Critical (9.3) | 0.92% | — | Jan 16, 2026 | Buffer overflow in XPS font fpgm data processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2025-14234 | Critical (9.3) | 0.92% | — | Jan 16, 2026 | Buffer overflow in CPCA list processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute… |
| CVE-2025-14233 | Critical (9.3) | 0.84% | — | Jan 16, 2026 | Invalid free in CPCA file deletion processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2025-14232 | Critical (9.3) | 0.92% | — | Jan 16, 2026 | Buffer overflow in XML processing of XPS file in Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2025-14231 | Critical (9.3) | 0.92% | — | Jan 16, 2026 | Buffer overflow in print job processing by WSD on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2024-12649 | Critical (9.8) | 1.2% | — | Jan 28, 2025 | Buffer overflow in XPS data font processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2024-12648 | Critical (9.8) | 1.2% | — | Jan 28, 2025 | Buffer overflow in TIFF data EXIF tag processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2024-12647 | Critical (9.8) | 1.2% | — | Jan 28, 2025 | Buffer overflow in CPCA font download processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2023-6234 | Critical (9.8) | 1.4% | — | Feb 6, 2024 | Buffer overflow in CPCA Color LUT Resource Download process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or… |
| CVE-2023-6233 | Critical (9.8) | 1.4% | — | Feb 6, 2024 | Buffer overflow in SLP attribute request process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute… |
| CVE-2023-6232 | Critical (9.8) | 1.5% | — | Feb 6, 2024 | Buffer overflow in the Address Book username process in authentication of Mobile Device Function of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the… |
| CVE-2023-6231 | Critical (9.8) | 1.4% | — | Feb 6, 2024 | Buffer overflow in WSD probe request process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute… |
| CVE-2023-6230 | Critical (9.8) | 1.5% | — | Feb 6, 2024 | Buffer overflow in the Address Book password process in authentication of Mobile Device Function of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the… |
| CVE-2023-6229 | Critical (9.8) | 1.4% | — | Feb 6, 2024 | Buffer overflow in CPCA PDL Resource Download process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to… |
| CVE-2022-24674 | High (8.8) | 1.1% | — | Mar 28, 2023 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The… |
| CVE-2022-24673 | Critical (9.8) | 2.6% | — | Mar 28, 2023 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The specific flaw… |
| CVE-2022-24672 | High (8.8) | 1.2% | — | Mar 28, 2023 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The… |
🎯 How it gets exploited (ATT&CK techniques)
Number of CVEs of this technology mapped to each exploitation or primary-impact technique.