ZeroHour

CVE-2018-5921

CVSS 3.0
8.8 high
EPSS
<1%p53
Published
()
Modified
Description

A potential security vulnerability has been identified with certain HP printers and MFPs in 2405129_000052 and other firmware versions. This vulnerability is known as Cross Site Request Forgery, and could potentially be exploited remotely to allow elevation of privilege.

Vendors
hp
Products
f2a70a firmware, f2a71a firmware, f2a67a firmware, b5l26a firmware, b5l39a firmware, c2s11a firmware, c2s11v firmware, c2s12a firmware, c2s12v firmware, l1h45a firmware, g1w46a firmware, g1w46v firmware
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.