Executive brief
The Canon EOS Network Setting Tool, used to configure network connections for Canon cameras, uses an unencrypted protocol by default when testing FTP connections. This could allow an attacker on the same network to intercept sensitive login credentials as they are transmitted. If exploited, this could lead to unauthorized access to the file servers where camera images and videos are stored.
Technical details
The vulnerability is classified as an insecure default initialization (CWE-1188) within the Canon EOS Network Setting Tool. The application defaults to using unencrypted FTP rather than secure alternatives like FTPS or SFTP during its communication test functions. A remote attacker who can monitor network traffic (e.g., via a man-in-the-middle position) could capture plaintext authentication credentials when a user performs a connection test. This affects both Windows and macOS versions of the tool. Canon has addressed this by releasing EOS Utility Ver.3.20.21, which includes an updated version of the Network Setting Tool.
Affected products
- Canon EOS Network Setting Tool 1.5.0 and earlier (included in EOS Utility Ver.3.12.0 through Ver.3.20.20)
Timeline
- 2026-06-15: disclosed: Initial disclosure by Canon
- 2026-06-15: patched: Fix released in EOS Utility Ver.3.20.21
- 2026-06-16: advisory: NVD publication date