7.5

CVE-2021-3965

Certain HP DesignJet products may be vulnerable to unauthenticated HTTP requests which allow viewing and downloading of print job previews.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
HpDesignjet T920 Cr355a Firmware Versionmry_07_07_04.1
   HpDesignjet T920 Cr355a Version-
HpDesignjet T920 Cr355b Firmware Versionmry_07_07_04.1
   HpDesignjet T920 Cr355b Version-
HpDesignjet T920 Cr354a Firmware Versionmry_07_07_04.1
   HpDesignjet T920 Cr354a Version-
HpDesignjet T930 L2y22a Firmware Versionmry_07_07_04.1
   HpDesignjet T930 L2y22a Version-
HpDesignjet T930 L2y22b Firmware Versionmry_07_07_04.1
   HpDesignjet T930 L2y22b Version-
HpDesignjet T930 L2y21a Firmware Versionmry_07_07_04.1
   HpDesignjet T930 L2y21a Version-
HpDesignjet T930 L2y21b Firmware Versionmry_07_07_04.1
   HpDesignjet T930 L2y21b Version-
HpDesignjet T1530 L2y24a Firmware Versionmry_07_07_04.1
   HpDesignjet T1530 L2y24a Version-
HpDesignjet T1530 L2y24b Firmware Versionmry_07_07_04.1
   HpDesignjet T1530 L2y24b Version-
HpDesignjet T1530 L2y23a Firmware Versionmry_07_07_04.1
   HpDesignjet T1530 L2y23a Version-
HpDesignjet T2530 L2y25a Firmware Versionmry_07_07_04.1
   HpDesignjet T2530 L2y25a Version-
HpDesignjet T2530 L2y26a Firmware Versionmry_07_07_04.1
   HpDesignjet T2530 L2y26a Version-
HpDesignjet T2530 L2y26b Firmware Versionmry_07_07_04.1
   HpDesignjet T2530 L2y26b Version-
HpDesignjet T3500 B9e24a Firmware Versionaeneas_04_09_06.1
   HpDesignjet T3500 B9e24a Version-
HpDesignjet T3500 B9e24b Firmware Versionaeneas_04_09_06.1
   HpDesignjet T3500 B9e24b Version-
HpDesignjet T3500 B9e25a Firmware Versionaeneas_04_09_06.1
   HpDesignjet T3500 B9e25a Version-
HpDesignjet Z6800 F2s72a Firmware Versionptr8_03_07_06.1
   HpDesignjet Z6800 F2s72a Version-
HpDesignjet Z6800 F2s72ar Firmware Versionptr8_03_07_06.1
   HpDesignjet Z6800 F2s72ar Version-
HpDesignjet Z6800 F2s72b Firmware Versionptr8_03_07_06.1
   HpDesignjet Z6800 F2s72b Version-
HpDesignjet Z6600 F2s71a Firmware Versionptr6_03_07_06.1
   HpDesignjet Z6600 F2s71a Version-
HpDesignjet Z6600 F2s71ar Firmware Versionptr6_03_07_06.1
   HpDesignjet Z6600 F2s71ar Version-
HpDesignjet Z6810 2qu12a Firmware Versionpx8_06_05_02.1
   HpDesignjet Z6810 2qu12a Version-
HpDesignjet Z6810 2qu12b Firmware Versionpx8_06_05_02.1
   HpDesignjet Z6810 2qu12b Version-
HpDesignjet Z6810 2qu14a Firmware Versionpx8_06_05_02.1
   HpDesignjet Z6810 2qu14a Version-
HpDesignjet Z6810 2qu14b Firmware Versionpx8_06_05_02.1
   HpDesignjet Z6810 2qu14b Version-
HpDesignjet Z6610 2qu13b Firmware Versionpx6_06_05_02.1
   HpDesignjet Z6610 2qu13b Version-
HpDesignjet Z6610 2qu13a Firmware Versionpx6_06_05_02.1
   HpDesignjet Z6610 2qu13a Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.26% 0.46
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-639 Authorization Bypass Through User-Controlled Key

The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.