Files
CVEs-PoC/2020/CVE-2020-26508.md
T
2024-05-25 21:48:12 +02:00

18 lines
658 B
Markdown

### [CVE-2020-26508](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26508)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
The WebTools component on Canon Oce ColorWave 3500 5.1.1.0 devices allows attackers to retrieve stored SMB credentials via the export feature, even though these are intentionally inaccessible in the UI.
### POC
#### Reference
- https://www.syss.de/pentest-blog/
#### Github
No PoCs found on GitHub currently.