CVE-2021-43774

MEDIUMCVSS 4.9/10EPSS 0.68%

Last modified

CVE-2021-43774 is a medium-severity vulnerability rated 4.9/10 on the CVSS scale. A risky-algorithm issue was discovered on Fujifilm DocuCentre-VI C4471 1.8 devices. An attacker that obtained access to the administrative web interface of a printer (e.g., by using the default credentials) can download the address book file, which contains the list of users (domain users, FTP users, etc.) stored on the printer, together with their encrypted passwords. EPSS estimates a 0.68% chance of exploitation in the next 30 days.

Description

A risky-algorithm issue was discovered on Fujifilm DocuCentre-VI C4471 1.8 devices. An attacker that obtained access to the administrative web interface of a printer (e.g., by using the default credentials) can download the address book file, which contains the list of users (domain users, FTP users, etc.) stored on the printer, together with their encrypted passwords. The passwords are protected by a weak cipher, such as ROT13, which requires minimal effort to instantly retrieve the original password, giving the attacker a list of valid domain or FTP usernames and passwords.

Metrics

CVSS 3.1
4.9/10

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

EPSS Probability
0.68%

47.5th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
FujifilmApeosport-Iv 7080 FirmwareAll versions
FujifilmApeosport-Iv 6080 FirmwareAll versions
FujifilmApeosport-Iv 5080 FirmwareAll versions
FujifilmApeosport-Iv 3065 Firmware< 1.160.5
FujifilmApeosport-Iv 3060 Firmware< 1.160.5
FujifilmApeosport-Iv 2060 Firmware< 1.160.5
FujifilmApeosport-Iv 5070 Firmware< 1.140.5
FujifilmApeosport-Iv 4070 Firmware< 1.140.5
FujifilmApeosport-Iv 3070 Firmware< 1.140.5
FujifilmApeosport-Iv C4430 Firmware< 1.772.4
FujifilmApeosport-Iv C5570 FirmwareAll versions
FujifilmApeosport-Iv C4470 FirmwareAll versions
FujifilmApeosport-Iv C3370 FirmwareAll versions
FujifilmApeosport-Iv C2270 FirmwareAll versions
FujifilmApeosport-Iv C5575 FirmwareAll versions
FujifilmApeosport-Iv C4475 FirmwareAll versions
FujifilmApeosport-Iv C3375 FirmwareAll versions
FujifilmApeosport-Iv C2275 FirmwareAll versions
FujifilmApeosport-Iv C7780 FirmwareAll versions
FujifilmApeosport-Iv C6680 FirmwareAll versions
FujifilmApeosport-Iv C5580 FirmwareAll versions
FujifilmApeosport-V 4020 Firmware< 1.57.2
FujifilmApeosport-V 4070 Firmware< 1.57.2
FujifilmApeosport-V 5070 Firmware< 1.57.2
FujifilmApeosport-V C3320 Firmware< 1.57.2
FujifilmApeosport-V C5585 Firmware< 1.60.0
FujifilmApeosport-V C6685 Firmware< 1.60.0
FujifilmApeosport-V C7785 Firmware< 1.60.0
FujifilmApeosport-V C7775 Firmware< 1.57.2
FujifilmApeosport-V C6675 Firmware< 1.57.2
FujifilmApeosport-V C5575 Firmware< 1.57.2
FujifilmApeosport-V C4475 Firmware< 1.57.2
FujifilmApeosport-V C3375 Firmware< 1.57.2
FujifilmApeosport-V C2275 Firmware< 1.57.2
FujifilmApeosport-V C7775 T2 Firmware< 2.60.0
FujifilmApeosport-V C6675 T2 Firmware< 2.60.0
FujifilmApeosport-V C5575 T2 Firmware< 2.60.0
FujifilmApeosport-V C4475 T2 Firmware< 2.60.0
FujifilmApeosport-V C3375 T2 Firmware< 2.60.0
FujifilmApeosport-V C3373 T2 Firmware< 2.60.0
FujifilmApeosport-V C2275 T2 Firmware< 2.60.0
FujifilmApeosport-V C7776 Firmware< 1.60.0
FujifilmApeosport-V C6676 Firmware< 1.60.0
FujifilmApeosport-V C5576 Firmware< 1.60.0
FujifilmApeosport-V C4476 Firmware< 1.60.0
FujifilmApeosport-V C3376 Firmware< 1.60.0
FujifilmApeosport-V C2276 Firmware< 1.60.0
FujifilmApeosport-V C7780 Firmware< 1.57.2
FujifilmApeosport-V C6680 Firmware< 1.57.2
FujifilmApeosport-V C5580 Firmware< 1.57.2

Showing 50 of 160 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2021-43774?
A risky-algorithm issue was discovered on Fujifilm DocuCentre-VI C4471 1.8 devices. An attacker that obtained access to the administrative web interface of a printer (e.g., by using the default credentials) can download the address book file, which contains the list of users (domain users, FTP users, etc.) stored on the printer, together with their encrypted passwords. The passwords are protected by a weak cipher, such as ROT13, which requires minimal effort to instantly retrieve the original password, giving the attacker a list of valid domain or FTP usernames and passwords.
How severe is CVE-2021-43774?
CVE-2021-43774 has a CVSS score of 4.9/10 (MEDIUM severity). The EPSS model estimates a 0.68% probability of exploitation in the next 30 days.
How do I fix CVE-2021-43774?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2021-43774?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST