7.5
CVE-2021-3965
- EPSS 0.26%
- Published 14.01.2022 20:15:11
- Last modified 21.11.2024 06:23:14
- Source hp-security-alert@hp.com
- Teams watchlist Login
- Open Login
Certain HP DesignJet products may be vulnerable to unauthenticated HTTP requests which allow viewing and downloading of print job previews.
Data is provided by the National Vulnerability Database (NVD)
Hp ≫ Designjet T920 Cr355a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T920 Cr355b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T920 Cr354a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T930 L2y22a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T930 L2y22b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T930 L2y21a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T930 L2y21b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T1530 L2y24a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T1530 L2y24b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T1530 L2y23a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T2530 L2y25a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T2530 L2y26a Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T2530 L2y26b Firmware Versionmry_07_07_04.1
Hp ≫ Designjet T3500 B9e24a Firmware Versionaeneas_04_09_06.1
Hp ≫ Designjet T3500 B9e24b Firmware Versionaeneas_04_09_06.1
Hp ≫ Designjet T3500 B9e25a Firmware Versionaeneas_04_09_06.1
Hp ≫ Designjet Z6800 F2s72a Firmware Versionptr8_03_07_06.1
Hp ≫ Designjet Z6800 F2s72ar Firmware Versionptr8_03_07_06.1
Hp ≫ Designjet Z6800 F2s72b Firmware Versionptr8_03_07_06.1
Hp ≫ Designjet Z6600 F2s71a Firmware Versionptr6_03_07_06.1
Hp ≫ Designjet Z6600 F2s71ar Firmware Versionptr6_03_07_06.1
Hp ≫ Designjet Z6810 2qu12a Firmware Versionpx8_06_05_02.1
Hp ≫ Designjet Z6810 2qu12b Firmware Versionpx8_06_05_02.1
Hp ≫ Designjet Z6810 2qu14a Firmware Versionpx8_06_05_02.1
Hp ≫ Designjet Z6810 2qu14b Firmware Versionpx8_06_05_02.1
Hp ≫ Designjet Z6610 2qu13b Firmware Versionpx6_06_05_02.1
Hp ≫ Designjet Z6610 2qu13a Firmware Versionpx6_06_05_02.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.26% | 0.46 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-639 Authorization Bypass Through User-Controlled Key
The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.