ZeroHour

CVE-2023-35175

CVSS 3.1
9.8 critical
EPSS
1%p71
Published
()
Modified
Description

Certain HP LaserJet Pro print products are potentially vulnerable to Potential Remote Code Execution and/or Elevation of Privilege via Server-Side Request Forgery (SSRF) using the Web Service Eventing model.

Vendors
hp
Products
w1a75a firmware, w1a76a firmware, w1a77a firmware, w1a78a firmware, w1a79a firmware, w1a80a firmware, w1a81a firmware, w1a82a firmware, laserjet pro m453-m454 w1y40a firmware, laserjet pro m453-m454 w1y41a firmware, laserjet pro m453-m454 w1y43a firmware, laserjet pro m453-m454 w1y44a firmware
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.