Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.807397
Category:Web application abuses
Title:HP Printer Wi-Fi Direct Improper Access Control Vulnerability
Summary:Multiple HP printers are prone to an improper access control; vulnerability.
Description:Summary:
Multiple HP printers are prone to an improper access control
vulnerability.

Vulnerability Insight:
HP printers with Wi-Fi Direct support let you print from a
mobile device directly to the printer without connecting to a wireless network. Several of these
printers are prone to a security vulnerability that allows an external system to obtain
unrestricted remote read/write access to the printer configuration using the embedded web server.

Vulnerability Impact:
Successful exploitation will allow an unauthenticated user to
access certain files on the target system that are not intended to be accessible.

Affected Software/OS:
HP OfficeJet Pro 8710 firmware version WBP2CN1619BR

HP OfficeJet Pro 8620 firmware version FDP1CN1547AR

Solution:
Apply the following mitigation actions:

- Disable Wi-Fi Direct functionality to protect your device

- Enable Password Settings on the Embedded Web Server

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

CopyrightCopyright (C) 2017 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.