Описание
The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote attackers to upgrade firmware.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:h:hp:color_laserjet:4650:*:*:*:*:*:*:*
cpe:2.3:h:hp:color_laserjet:5500:*:*:*:*:*:*:*
cpe:2.3:h:hp:color_laserjet:5550:*:*:*:*:*:*:*
cpe:2.3:h:hp:color_laserjet_4600:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_2500:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_3000:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_3700:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_4100_mfp:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_4200:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_4300:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9000:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9000_mfp:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9040_mpf:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9050:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9050_mpf:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9055:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9065:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9500:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9500_mpf:*:*:*:*:*:*:*:*
EPSS
Процентиль: 77%
0.01026
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote attackers to upgrade firmware.
EPSS
Процентиль: 77%
0.01026
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other