CVE-2021-43471

HIGH

Canon LBP223 - DoS

Title source: llm
STIX 2.1

Description

In Canon LBP223 printers, the System Manager Mode login does not require an account password or PIN. An attacker can remotely shut down the device after entering the background, creating a denial of service vulnerability.

Exploits (1)

nomisec WRITEUP
by cxaqhq · poc
https://github.com/cxaqhq/CVE-2021-43471

Scores

CVSS v3 7.5
EPSS 0.0029
EPSS Percentile 52.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-521
Status published
Products (1)
canon/lbp223dw_firmware
Published Dec 06, 2021
Tracked Since Feb 18, 2026