Unknown
CVE-2021-20871
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)CVE-2021-20871
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Exposure of sensitive information to an unauthorized actor vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G00-35 and earlier, bizhub C650i/C550i/C450i G00-B6 and earlier, bizhub C360i/C300i/C250i G00-B6 and earlier, bizhub 750i/650i/550i/450i G00-37 and earlier, bizhub 360i/300i G00-33 and earlier, bizhub C287i/C257i/C227i G00-19 and earlier, bizhub 306i/266i/246i/226i G00-B6 and earlier, bizhub C759/C659 GC7-X8 and earlier, bizhub C658/C558/C458 GC7-X8 and earlier, bizhub 958/808/758 GC7-X8 and earlier, bizhub 658e/558e/458e GC7-X8 and earlier, bizhub C287/C227 GC7-X8 and earlier, bizhub 287/227 GC7-X8 and earlier, bizhub 368e/308e GC7-X8 and earlier, bizhub C368/C308/C258 GC9-X4 and earlier, bizhub 558/458/368/308 GC9-X4 and earlier, bizhub C754e/C654e GDQ-M0 and earlier, bizhub 754e/654e GDQ-M0 and earlier, bizhub C554e/C454e GDQ-M1 and earlier, bizhub C364e/C284e/C224e GDQ-M1 and earlier, bizhub 554e/454e/364e/284e/224e GDQ-M1 and earlier, bizhub C754/C654 C554/C454 GR1-M0 and earlier, bizhub C364/C284/C224 GR1-M0 and earlier, bizhub 754/654 GR1-M0 and earlier, bizhub C4050i/C3350i/C4000i/C3300i G00-B6 and earlier, bizhub C3320i G00-B6 and earlier, bizhub 4750i/4050i G00-22 and earlier, bizhub 4700i G00-22 and earlier, bizhub C3851FS/C3851/C3351 GC9-X4 and earlier, and bizhub 4752/4052 GC9-X4 and earlier) allows an attacker on the adjacent network to obtain the credentials if the destination information including credentials are registered in the address book via a specific SOAP message.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- bizhub 224e firmware,
- bizhub 226i firmware,
- bizhub 227 firmware,
- bizhub 246i firmware,
- bizhub 266i firmware,
- bizhub 284e firmware,
- bizhub 287 firmware,
- bizhub 300i firmware,
- bizhub 306i firmware,
- bizhub 308 firmware,
- bizhub 308e firmware,
- bizhub 360i firmware,
- bizhub 364e firmware,
- bizhub 368 firmware,
- bizhub 368e firmware,
- bizhub 4050i firmware,
- bizhub 4052 firmware,
- bizhub 450i firmware,
- bizhub 454e firmware,
- bizhub 458 firmware,
- bizhub 458e firmware,
- bizhub 4700i firmware,
- bizhub 4750i firmware,
- bizhub 4752 firmware,
- bizhub 550i firmware,
- bizhub 554e firmware,
- bizhub 558 firmware,
- bizhub 558e firmware,
- bizhub 650i firmware,
- bizhub 654 firmware,
- bizhub 654e firmware,
- bizhub 658e firmware,
- bizhub 750i firmware,
- bizhub 754 firmware,
- bizhub 754e firmware,
- bizhub 758 firmware,
- bizhub 808 firmware,
- bizhub 958 firmware,
- bizhub c224 firmware,
- bizhub c224e firmware,
- bizhub c227 firmware,
- bizhub c227i firmware,
- bizhub c250i firmware,
- bizhub c257i firmware,
- bizhub c258 firmware,
- bizhub c284 firmware,
- bizhub c284e firmware,
- bizhub c287 firmware,
- bizhub c287i firmware,
- bizhub c300i firmware,
- bizhub c308 firmware,
- bizhub c3300i firmware,
- bizhub c3320i firmware,
- bizhub c3350i firmware,
- bizhub c3351 firmware,
- bizhub c360i firmware,
- bizhub c364 firmware,
- bizhub c364e firmware,
- bizhub c368 firmware,
- bizhub c3851 firmware,
- bizhub c3851fs firmware,
- bizhub c4000i firmware,
- bizhub c4050i firmware,
- bizhub c450i firmware,
- bizhub c454 firmware,
- bizhub c454e firmware,
- bizhub c458 firmware,
- bizhub c550i firmware,
- bizhub c554 firmware,
- bizhub c554e firmware,
- bizhub c558 firmware,
- bizhub c650i firmware,
- bizhub c654 firmware,
- bizhub c654e firmware,
- bizhub c658 firmware,
- bizhub c659 firmware,
- bizhub c750i firmware,
- bizhub c754 firmware,
- bizhub c754e firmware,
- bizhub c759 firmware
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: