Vulnerability Description
Improper validation of SSH host keys in Canon EOS Network Setting Tool Version 1.5.0 or earlier
CVSS Score
6.5
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canon | Eos Network Setting Tool | < 1.5.1 |
| Apple | Macos | - |
| Microsoft | Windows | - |
Related Weaknesses (CWE)
References
- https://canon.jp/support/support-info/260615vulnerability-responseVendor Advisory
- https://psirt.canon/advisory-information/cp2026-005/Vendor Advisory
- https://www.canon-europe.com/support/product-security/Vendor Advisory
- https://www.usa.canon.com/about-us/to-our-customers/cpa2026-005-vulnerability-reVendor Advisory
FAQ
What is CVE-2026-9258?
CVE-2026-9258 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Improper validation of SSH host keys in Canon EOS Network Setting Tool Version 1.5.0 or earlier
How severe is CVE-2026-9258?
CVE-2026-9258 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-9258?
Check the references section above for vendor advisories and patch information. Affected products include: Canon Eos Network Setting Tool, Apple Macos, Microsoft Windows.