Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2017-2743


HP has identified a potential security vulnerability with HP Enterprise LaserJet Printers and MFPs, HP OfficeJet Enterprise Color Printers and MFP, HP PageWide Color Printers and MPS before 2308214_000901, 2308214_000900, and other firmware versions. The vulnerability could be exploited to perform a cross site scripting (XSS) attack.


Security Impact Summary

This vulnerability carries a MEDIUM severity rating with a CVSS v3.1 score of 6.1, indicating it can be exploited remotely over the network with relatively low complexity though user interaction is required and does not require pre-existing privileges . The vulnerability impacts limited data confidentiality, limited integrity, for affected systems. Impacting 175 products from hp, from hp, from hp and 172 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

First disclosed in 2018, this vulnerability was reported during a period defined by widespread IoT adoption challenges, mobile security concerns, and the emergence of advanced persistent threat (APT) techniques. Contemporary mitigation strategies focused on secure development practices and third-party component vetting.


Published

2018-01-23T16:29:01.087

Last Modified

2024-11-21T03:24:05.877

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 6.1 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:N/I:P/A:N

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: PARTIAL
  • Availability Impact: NONE
Exploitability Score

8.6

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System hp cc419a_firmware < 2308214_000901 Yes
Hardware hp cc419a - No
Operating System hp cc420a_firmware < 2308214_000901 Yes
Hardware hp cc420a - No
Operating System hp cc421a_firmware < 2308214_000901 Yes
Hardware hp cc421a - No
Operating System hp ce709a_firmware < 2308214_000900 Yes
Hardware hp ce709a - No
Operating System hp ce708a_firmware < 2308214_000900 Yes
Hardware hp ce708a - No
Operating System hp ce707a_firmware < 2308214_000900 Yes
Hardware hp ce707a - No
Operating System hp ce503a_firmware < 2308214_000904 Yes
Hardware hp ce503a - No
Operating System hp ce504a_firmware < 2308214_000904 Yes
Hardware hp ce504a - No
Operating System hp ce738a_firmware < 2308214_000904 Yes
Hardware hp ce738a - No
Operating System hp ce989a_firmware < 2308214_000926 Yes
Hardware hp ce989a - No
Operating System hp ce990a_firmware < 2308214_000926 Yes
Hardware hp ce990a - No
Operating System hp ce991a_firmware < 2308214_000926 Yes
Hardware hp ce991a - No
Operating System hp ce992a_firmware < 2308214_000926 Yes
Hardware hp ce992a - No
Operating System hp ce993a_firmware < 2308214_000926 Yes
Hardware hp ce993a - No
Operating System hp ce994a_firmware < 2308214_000926 Yes
Hardware hp ce994a - No
Operating System hp ce995a_firmware < 2308214_000926 Yes
Hardware hp ce995a - No
Operating System hp ce996a_firmware < 2308214_000926 Yes
Hardware hp ce996a - No
Operating System hp cf081a_firmware < 2308214_000927 Yes
Hardware hp cf081a - No
Operating System hp cf082a_firmware < 2308214_000927 Yes
Hardware hp cf082a - No
Operating System hp cf083a_firmware < 2308214_000927 Yes
Hardware hp cf083a - No
Operating System hp l2717a_firmware < 2308214_000903 Yes
Hardware hp l2717a - No
Operating System hp cd644a_firmware < 2308214_000925 Yes
Hardware hp cd644a - No
Operating System hp cd645a_firmware < 2308214_000925 Yes
Hardware hp cd644a - No
Operating System hp cf116a_firmware < 2308214_000913 Yes
Hardware hp cf116a - No
Operating System hp cf117a_firmware < 2308214_000913 Yes
Hardware hp cf117a - No
Operating System hp cc522a_firmware < 2308214_000932 Yes
Hardware hp cc522a - No
Operating System hp cc523a_firmware < 2308214_000932 Yes
Hardware hp cc523a - No
Operating System hp cc524a_firmware < 2308214_000932 Yes
Hardware hp cc524a - No
Operating System hp cf235a_firmware < 2308214_000922 Yes
Hardware hp cf235a - No
Operating System hp cf236a_firmware < 2308214_000922 Yes
Hardware hp cf236a - No
Operating System hp cf238a_firmware < 2308214_000922 Yes
Hardware hp cf238a - No
Operating System hp cd646a_firmware < 2308214_000925 Yes
Hardware hp cd646a - No
Operating System hp cf118a_firmware < 2308214_000913 Yes
Hardware hp cf118a - No
Operating System hp cf066a_firmware < 2308214_000921 Yes
Hardware hp cf066a - No
Operating System hp cf067a_firmware < 2308214_000921 Yes
Hardware hp cf067a - No
Operating System hp cf068a_firmware < 2308214_000921 Yes
Hardware hp cf068a - No
Operating System hp cf069a_firmware < 2308214_000921 Yes
Hardware hp cf069a - No
Operating System hp d3l08a_firmware < 2308214_000931 Yes
Hardware hp d3l08a - No
Operating System hp d3l09a_firmware < 2308214_000931 Yes
Hardware hp d3l09a - No
Operating System hp d3l10a_firmware < 2308214_000931 Yes
Hardware hp d3l10a - No
Operating System hp a2w77a_firmware < 2308214_000930 Yes
Hardware hp a2w77a - No
Operating System hp a2w78a_firmware < 2308214_000930 Yes
Hardware hp a2w78a - No
Operating System hp a2w79a_firmware < 2308214_000930 Yes
Hardware hp a2w79a - No
Operating System hp a2w76a_firmware < 2308214_000928 Yes
Hardware hp a2w76a - No
Operating System hp a2w75a_firmware < 2308214_000928 Yes
Hardware hp a2w75a - No
Operating System hp d7p70a_firmware < 2308214_000928 Yes
Hardware hp d7p70a - No
Operating System hp d7p71a_firmware < 2308214_000928 Yes
Hardware hp d7p71a - No
Operating System hp cf367a_firmware < 2308214_000916 Yes
Hardware hp cf367a - No
Operating System hp cz244a_firmware < 2308214_000920 Yes
Hardware hp cz244a - No
Operating System hp cz245a_firmware < 2308214_000920 Yes
Hardware hp cz245a - No
Operating System hp b5l04a_firmware < 2308214_000902 Yes
Hardware hp b5l04a - No
Operating System hp b5l05a_firmware < 2308214_000902 Yes
Hardware hp b5l05a - No
Operating System hp b5l07a_firmware < 2308214_000902 Yes
Hardware hp b5l07a - No
Operating System hp c2s11a_firmware < 2308214_000906 Yes
Hardware hp c2s11a - No
Operating System hp c2s12a_firmware < 2308214_000906 Yes
Hardware hp c2s12a - No
Operating System hp j7x28a_firmware < _2308214_000912 Yes
Hardware hp j7x28a - No
Operating System hp b5l23a_firmware < 2308214_000907 Yes
Hardware hp b5l23a - No
Operating System hp b5l24a_firmware < 2308214_000907 Yes
Hardware hp b5l24a - No
Operating System hp b5l25a_firmware < 2308214_000907 Yes
Hardware hp b5l25a - No
Operating System hp b5l26a_firmware < 2308214_000907 Yes
Hardware hp b5l26a - No
Operating System hp e6b67a_firmware < 2308214_000908 Yes
Hardware hp e6b67a - No
Operating System hp e6b68a_firmware < 2308214_000908 Yes
Hardware hp e6b68a - No
Operating System hp e6b69a_firmware < 2308214_000908 Yes
Hardware hp e6b69a - No
Operating System hp e6b70a_firmware < 2308214_000908 Yes
Hardware hp e6b70a - No
Operating System hp e6b71a_firmware < _2308214_000908 Yes
Hardware hp e6b71a - No
Operating System hp e6b72a_firmware < 2308214_000908 Yes
Hardware hp e6b72a - No
Operating System hp e6b73a_firmware < 2308214_000908 Yes
Hardware hp e6b73a - No
Operating System hp b3g85a_firmware < 2308214_000912 Yes
Hardware hp b3g85a - No
Operating System hp b5l46a_firmware < 2308214_000909 Yes
Hardware hp b5l46a - No
Operating System hp b5l47a_firmware < 2308214_000909 Yes
Hardware hp b5l47a - No
Operating System hp b5l48a_firmware < 2308214_000909 Yes
Hardware hp b5l48a - No
Operating System hp 2a68a_firmware < 2308214_000911 Yes
Hardware hp 2a68a - No
Operating System hp 2a69a_firmware < 2308214_000911 Yes
Hardware hp 2a69a - No
Operating System hp 2a70a_firmware < 2308214_000911 Yes
Hardware hp 2a70a - No
Operating System hp 2a71a_firmware < 2308214_000911 Yes
Hardware hp 2a71a - No
Operating System hp f2a76a_firmware < 2308214_000905 Yes
Hardware hp f2a76a - No
Operating System hp f2a77a_firmware < 2308214_000905 Yes
Hardware hp f2a77a - No
Operating System hp f2a81a_firmware < 2308214_000905 Yes
Hardware hp f2a81a - No
Operating System hp g1w46a_firmware < 2308214_000910 Yes
Hardware hp g1w46a - No
Operating System hp g1w46v_firmware < 2308214_000910 Yes
Hardware hp g1w46v - No
Operating System hp g1w47a_firmware < 2308214_000910 Yes
Hardware hp g1w47a - No
Operating System hp g1w47v_firmware < 2308214_000910 Yes
Hardware hp g1w47v - No
Operating System hp l3u44a_firmware < 2308214_000910 Yes
Hardware hp l3u44a - No
Operating System hp g1w40a_firmware < 2308214_000923 Yes
Hardware hp g1w40a - No
Operating System hp g1w39a_firmware < 2308214_000923 Yes
Hardware hp g1w39a - No
Operating System hp g1w41a_firmware < 2308214_000923 Yes
Hardware hp g1w41a - No
Operating System hp l3u43a_firmware < 2308214_000923 Yes
Hardware hp l3u43a - No
Operating System hp l3u42a_firmware < 2308214_000923 Yes
Hardware hp l3u42a - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For hp's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.