CVE-2013-4613 Details
Description
The default configuration of the administrative interface on the Canon MG3100, MG5300, MG6100, MP495, MX340, MX870, MX890, MX920, and MX922 printers does not require authentication, which allows remote attackers to modify the configuration by visiting the Advanced page. NOTE: the vendor has apparently responded by stating "for user convenience, the default setting does not require a password. However, if a user has a particular concern about third parties accessing the user's home printer, the default setting can be changed to add a password."
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No CVSS 3.x data is available for this CVE.
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-264 | Permissions, Privileges, and Access Controls | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| canon mg3100 printer | All versions |
CPE
Remediation
| |
| canon mg5300 printer | All versions |
CPE
Remediation
| |
| canon mg6100 printer | All versions |
CPE
Remediation
| |
| canon mp340 printer | All versions |
CPE
Remediation
| |
| canon mp495 printer | All versions |
CPE
Remediation
| |
| canon mx870 printer | All versions |
CPE
Remediation
| |
| canon mx890 printer | All versions |
CPE
Remediation
| |
| canon mx920 printer | All versions |
CPE
Remediation
| |
| canon mx922 printer | All versions |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 16, 2026 | CVE Modified | [email protected] |
| Apr 29, 2026 | Status Change | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Jun 24, 2013 | Initial Analysis | [email protected] |