A potential security vulnerability has been identified with certain HP printers and MFPs in 2405129_000052 and other firmware versions. This vulnerability is known as Cross Site Request Forgery, and could potentially be exploited remotely to allow elevation of privilege.

Project Subscriptions

Vendors Products
A2w75a Firmware Subscribe
A2w76a Firmware Subscribe
A2w77a Firmware Subscribe
A2w78a Firmware Subscribe
A2w79a Firmware Subscribe
B3g84a Firmware Subscribe
B3g85a Firmware Subscribe
B3g86a Firmware Subscribe
B5l04a Firmware Subscribe
B5l05a Firmware Subscribe
B5l06a Firmware Subscribe
B5l07a Firmware Subscribe
B5l26a Firmware Subscribe
B5l39a Firmware Subscribe
B5l46a Firmware Subscribe
B5l47a Firmware Subscribe
B5l48a Firmware Subscribe
B5l49a Firmware Subscribe
B5l50a Firmware Subscribe
B5l54a Firmware Subscribe
C2s11a Firmware Subscribe
C2s11v Firmware Subscribe
C2s12a Firmware Subscribe
C2s12v Firmware Subscribe
Ca251a Firmware Subscribe
Cc522a Firmware Subscribe
Cc523a Firmware Subscribe
Cc524a Firmware Subscribe
Cd644a Firmware Subscribe
Cd645a Firmware Subscribe
Cd646a Firmware Subscribe
Cf066a Firmware Subscribe
Cf067a Firmware Subscribe
Cf068a Firmware Subscribe
Cf069a Firmware Subscribe
Cf116a Firmware Subscribe
Cf117a Firmware Subscribe
Cf118a Firmware Subscribe
Cf367a Firmware Subscribe
Cz244a Firmware Subscribe
Cz245a Firmware Subscribe
Cz248a Firmware Subscribe
Cz249a Firmware Subscribe
Cz250a Firmware Subscribe
D7p68a Firmware Subscribe
D7p70a Firmware Subscribe
D7p71a Firmware Subscribe
D7p73a Firmware Subscribe
E6b71a Firmware Subscribe
E6b73a Firmware Subscribe
F2a67a Firmware Subscribe
F2a70a Firmware Subscribe
F2a71a Firmware Subscribe
F2a76a Firmware Subscribe
F2a77a Firmware Subscribe
F2a78v Firmware Subscribe
F2a79a Firmware Subscribe
F2a80a Firmware Subscribe
F2a81a Firmware Subscribe
G1w39a Firmware Subscribe
G1w39v Firmware Subscribe
G1w40a Firmware Subscribe
G1w40v Firmware Subscribe
G1w41a Firmware Subscribe
G1w41v Firmware Subscribe
G1w46a Firmware Subscribe
G1w46v Firmware Subscribe
G1w47a Firmware Subscribe
G1w47v Firmware Subscribe
H0dc9a Firmware Subscribe
J7x28a Firmware Subscribe
J7z04a Firmware Subscribe
J7z06a Firmware Subscribe
J7z98a Firmware Subscribe
J7z99a Firmware Subscribe
J8a04a Firmware Subscribe
J8a05a Firmware Subscribe
J8a06a Firmware Subscribe
J8a10a Firmware Subscribe
J8a11a Firmware Subscribe
J8a12a Firmware Subscribe
J8a13a Firmware Subscribe
J8a16a Firmware Subscribe
J8a17a Firmware Subscribe
J8j63a Firmware Subscribe
J8j64a Firmware Subscribe
J8j65a Firmware Subscribe
J8j66a Firmware Subscribe
J8j67a Firmware Subscribe
J8j70a Firmware Subscribe
J8j71a Firmware Subscribe
J8j72a Firmware Subscribe
J8j73a Firmware Subscribe
J8j74a Firmware Subscribe
J8j76a Firmware Subscribe
J8j78a Firmware Subscribe
J8j79a Firmware Subscribe
J8j80a Firmware Subscribe
K0q14a Firmware Subscribe
K0q15a Firmware Subscribe
K0q17a Firmware Subscribe
K0q18a Firmware Subscribe
K0q19a Firmware Subscribe
K0q20a Firmware Subscribe
K0q21a Firmware Subscribe
K0q22a Firmware Subscribe
L1h45a Firmware Subscribe
L2683a Firmware Subscribe
L2762a Firmware Subscribe
L3u40a Firmware Subscribe
L3u41a Firmware Subscribe
L3u42a Firmware Subscribe
L3u43a Firmware Subscribe
L3u44a Firmware Subscribe
L3u45a Firmware Subscribe
L3u46a Firmware Subscribe
L3u47a Firmware Subscribe
L3u48a Firmware Subscribe
L3u49a Firmware Subscribe
L3u50a Firmware Subscribe
L3u51a Firmware Subscribe
L3u52a Firmware Subscribe
L3u55a Firmware Subscribe
L3u56a Firmware Subscribe
L3u57a Firmware Subscribe
L3u59a Firmware Subscribe
L3u61a Firmware Subscribe
L3u62a Firmware Subscribe
L3u63a Firmware Subscribe
L3u64a Firmware Subscribe
L3u65a Firmware Subscribe
L3u66a Firmware Subscribe
L3u67a Firmware Subscribe
L3u69a Firmware Subscribe
L3u70a Firmware Subscribe
L8z07a Firmware Subscribe
M0p32a Firmware Subscribe
M0p33a Firmware Subscribe
M0p35a Firmware Subscribe
M0p36a Firmware Subscribe
M0p39a Firmware Subscribe
M0p40a Firmware Subscribe
P7z47a Firmware Subscribe
P7z48a Firmware Subscribe
X3a59a Firmware Subscribe
X3a60a Firmware Subscribe
X3a62a Firmware Subscribe
X3a63a Firmware Subscribe
X3a65a Firmware Subscribe
X3a66a Firmware Subscribe
X3a68a Firmware Subscribe
X3a69a Firmware Subscribe
X3a71a Firmware Subscribe
X3a72a Firmware Subscribe
X3a74a Firmware Subscribe
X3a75a Firmware Subscribe
X3a77a Firmware Subscribe
X3a78a Firmware Subscribe
X3a79a Firmware Subscribe
X3a80a Firmware Subscribe
X3a81a Firmware Subscribe
X3a83a Firmware Subscribe
X3a84a Firmware Subscribe
X3a86a Firmware Subscribe
X3a87a Firmware Subscribe
X3a89a Firmware Subscribe
X3a90a Firmware Subscribe
X3a92a Firmware Subscribe
X3a93a Firmware Subscribe
Z8z00a Firmware Subscribe
Z8z01a Firmware Subscribe
Z8z02a Firmware Subscribe
Z8z03a Firmware Subscribe
Z8z04a Firmware Subscribe
Z8z05a Firmware Subscribe
Z8z06a Firmware Subscribe
Z8z07a Firmware Subscribe
Z8z08a Firmware Subscribe
Z8z09a Firmware Subscribe
Z8z10a Firmware Subscribe
Z8z11a Firmware Subscribe
Z8z12a Firmware Subscribe
Z8z13a Firmware Subscribe
Z8z14a Firmware Subscribe
Z8z15a Firmware Subscribe
Z8z16a Firmware Subscribe
Z8z17a Firmware Subscribe
Z8z18a Firmware Subscribe
Z8z19a Firmware Subscribe
Z8z20a Firmware Subscribe
Z8z21a Firmware Subscribe
Z8z22a Firmware Subscribe
Z8z23a Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2018-17688 A potential security vulnerability has been identified with certain HP printers and MFPs in 2405129_000052 and other firmware versions. This vulnerability is known as Cross Site Request Forgery, and could potentially be exploited remotely to allow elevation of privilege.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: hp

Published:

Updated: 2024-09-17T02:12:06.090Z

Reserved: 2018-01-19T00:00:00

Link: CVE-2018-5921

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-10-03T20:29:18.520

Modified: 2024-11-21T04:09:42.497

Link: CVE-2018-5921

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses