Skip to content

BLACK-SCORP10/Canon-imageRUNNER-1435-Printer-Spoofing-Vulnerability

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 

Repository files navigation

Canon imageRUNNER-1435 Printer Spoofing Vulnerability

This repository demonstrates a vulnerability in Canon imageRUNNER 1435 (version iR1435 SCA12895), where an attacker with local network access can spoof the printer's MAC and IP address to impersonate the device. This allows for interception of print jobs, information disclosure, and potential code execution.

🛠️ Affected Device

  • Vendor: Canon
  • Product: imageRUNNER 1435
  • Version: iR1435 SCA12895

💥 Impact

  • Intercept sensitive print jobs (Information Disclosure)
  • Execute arbitrary code via crafted print data (Code Execution)
  • Gain unauthorized access as a trusted printer (Privilege Escalation)

🧪 Requirements

  • A Kali Linux or similar Linux VM
  • Network access to the printer's LAN
  • MAC/IP of the target printer

🔧 Exploitation Steps

An attacker with local network access can impersonate a trusted printing device by exploiting insufficient identity verification mechanisms at the network and application layers. This allows interception and potential manipulation of data transmitted to the affected system, leading to unauthorized access to sensitive information and trusted workflows.

About

This repository demonstrates a vulnerability in Canon imageRUNNER 1435 (version iR1435 SCA12895), where an attacker with local network access can spoof the printer's MAC and IP address to impersonate the device. This allows for interception of print jobs, information disclosure, and potential code execution.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors