PT-2018-7183 · Hewlett Packard · Hp Laserjet Enterprise+3

Published

2018-01-23

·

Updated

2018-02-21

·

CVE-2017-2750

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: HP LaserJet Enterprise printers versions prior to 2308937 578479 HP PageWide Enterprise printers versions prior to 2308937 578479 HP LaserJet Managed printers versions prior to 2308937 578479 HP OfficeJet Enterprise printers versions prior to 2308937 578479
Description: The issue is related to insufficient validation of DLL signatures, which could allow the execution of arbitrary code.
Recommendations: For HP LaserJet Enterprise printers versions prior to 2308937 578479, update the firmware to version 2308937 578479 or later. For HP PageWide Enterprise printers versions prior to 2308937 578479, update the firmware to version 2308937 578479 or later. For HP LaserJet Managed printers versions prior to 2308937 578479, update the firmware to version 2308937 578479 or later. For HP OfficeJet Enterprise printers versions prior to 2308937 578479, update the firmware to version 2308937 578479 or later.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-2750

Affected Products

Hp Laserjet Enterprise
Hp Laserjet Managed
Officejet Enterprise
Hp Pagewide Enterprise