Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2017-2741


A potential security vulnerability has been identified with HP PageWide Printers, HP OfficeJet Pro Printers, with firmware before 1708D. This vulnerability could potentially be exploited to execute arbitrary code.


Security Impact Summary

This vulnerability carries a CRITICAL severity rating with a CVSS v3.1 score of 9.8, indicating it can be exploited remotely over the network with relatively low complexity without requiring user interaction and does not require pre-existing privileges . The vulnerability impacts confidentiality (data exposure), integrity (unauthorized modifications), and availability (service disruption) for affected systems. Impacting 76 products from hp, from hp, from hp and 73 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

First disclosed in 2018, this vulnerability was reported during a period defined by widespread IoT adoption challenges, mobile security concerns, and the emergence of advanced persistent threat (APT) techniques. Contemporary mitigation strategies focused on secure development practices and third-party component vetting.


Published

2018-01-23T16:29:00.787

Last Modified

2024-11-21T03:24:05.587

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 9.8 (CRITICAL)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System hp j9v82a_firmware < 1708d Yes
Hardware hp j9v82a - No
Operating System hp j9v82b_firmware < 1708d Yes
Hardware hp j9v82b - No
Operating System hp j9v82c_firmware < 1708d Yes
Hardware hp j9v82c - No
Operating System hp j9v82d_firmware < 1708d Yes
Hardware hp j9v82d - No
Operating System hp j6u55a_firmware < 1708d Yes
Hardware hp j6u55a - No
Operating System hp j6u55b_firmware < 1708d Yes
Hardware hp j6u55b - No
Operating System hp j6u55c_firmware < 1708d Yes
Hardware hp j6u55c - No
Operating System hp j6u55d_firmware < 1708d Yes
Hardware hp j6u55d - No
Operating System hp k9z76a_firmware < 1708d Yes
Hardware hp k9z76a - No
Operating System hp k9z76d_firmware < 1708d Yes
Hardware hp k9z76d - No
Operating System hp d3q17a_firmware < 1708d Yes
Hardware hp d3q17a - No
Operating System hp d3q17c_firmware < 1708d Yes
Hardware hp d3q17c - No
Operating System hp d3q17d_firmware < 1708d Yes
Hardware hp d3q17d - No
Operating System hp d3q21a_firmware < 1708d Yes
Hardware hp d3q21a - No
Operating System hp d3q21c_firmware < 1708d Yes
Hardware hp d3q21c - No
Operating System hp d3q21d_firmware < 1708d Yes
Hardware hp d3q21d - No
Operating System hp d3q20a_firmware < 1708d Yes
Hardware hp d3q20a - No
Operating System hp d3q20b_firmware < 1708d Yes
Hardware hp d3q20b - No
Operating System hp d3q20c_firmware < 1708d Yes
Hardware hp d3q20c - No
Operating System hp d3q20d_firmware < 1708d Yes
Hardware hp d3q20d - No
Operating System hp d3q16a_firmware < 1708d Yes
Hardware hp d3q16a - No
Operating System hp d3q16b_firmware < 1708d Yes
Hardware hp d3q16b - No
Operating System hp d3q16c_firmware < 1708d Yes
Hardware hp d3q16c - No
Operating System hp d3q16d_firmware < 1708d Yes
Hardware hp d3q16d - No
Operating System hp d3q19a_firmware < 1708d Yes
Hardware hp d3q19a - No
Operating System hp d3q19d_firmware < 1708d Yes
Hardware hp d3q19d - No
Operating System hp d3q15a_firmware < 1708d Yes
Hardware hp d3q15a - No
Operating System hp d3q15b_firmware < 1708d Yes
Hardware hp d3q15b - No
Operating System hp d3q15d_firmware < 1708d Yes
Hardware hp d3q15d - No
Operating System hp j9v80a_firmware < 1708d Yes
Hardware hp j9v80a - No
Operating System hp j9v80b_firmware < 1708d Yes
Hardware hp j9v80b - No
Operating System hp j6u57b_firmware < 1708d Yes
Hardware hp j6u57b - No
Operating System hp d9l20a_firmware < 1708d Yes
Hardware hp d9l20a - No
Operating System hp d9l21a_firmware < 1708d Yes
Hardware hp d9l21a - No
Operating System hp d9l63a_firmware < 1708d Yes
Hardware hp d9l63a - No
Operating System hp d9l64a_firmware < 1708d Yes
Hardware hp d9l64a - No
Operating System hp t0g70a_firmware < 1708d Yes
Hardware hp t0g70a - No
Operating System hp j3p68a_firmware < 1708d Yes
Hardware hp j3p68a - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For hp's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.