7.5
CVE-2021-3965
- EPSS 0.26%
- Veröffentlicht 14.01.2022 20:15:11
- Zuletzt bearbeitet 21.11.2024 06:23:14
- Quelle hp-security-alert@hp.com
- CVE-Watchlists
- Unerledigt
Certain HP DesignJet products may be vulnerable to unauthenticated HTTP requests which allow viewing and downloading of print job previews.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hp ≫ Designjet T920 Cr355a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T920 Cr355b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T920 Cr354a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T930 L2y22a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T930 L2y22b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T930 L2y21a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T930 L2y21b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T1530 L2y24a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T1530 L2y24b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T1530 L2y23a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T2530 L2y25a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T2530 L2y26a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T2530 L2y26b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T3500 B9e24a Firmware Versionaeneas_04_09_06.1
Hp ≫ Designjet T3500 B9e24b Firmware Versionaeneas_04_09_06.1
Hp ≫ Designjet T3500 B9e25a Firmware Versionaeneas_04_09_06.1
Hp ≫ Designjet Z6800 F2s72a Firmware Versionptr8_03_07_06.1
Hp ≫ Designjet Z6800 F2s72ar Firmware Versionptr8_03_07_06.1
Hp ≫ Designjet Z6800 F2s72b Firmware Versionptr8_03_07_06.1
Hp ≫ Designjet Z6600 F2s71a Firmware Versionptr6_03_07_06.1
Hp ≫ Designjet Z6600 F2s71ar Firmware Versionptr6_03_07_06.1
Hp ≫ Designjet Z6810 2qu12a Firmware Versionpx8_06_05_02.1
Hp ≫ Designjet Z6810 2qu12b Firmware Versionpx8_06_05_02.1
Hp ≫ Designjet Z6810 2qu14a Firmware Versionpx8_06_05_02.1
Hp ≫ Designjet Z6810 2qu14b Firmware Versionpx8_06_05_02.1
Hp ≫ Designjet Z6610 2qu13b Firmware Versionpx6_06_05_02.1
Hp ≫ Designjet Z6610 2qu13a Firmware Versionpx6_06_05_02.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.26% | 0.46 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-639 Authorization Bypass Through User-Controlled Key
The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.