Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-4063


Certain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when using an improper eSCL URL GET request.


Security Impact Summary

This vulnerability carries a MEDIUM severity rating with a CVSS v3.1 score of 5.3, indicating it can be exploited remotely over the network with relatively low complexity without requiring user interaction and does not require pre-existing privileges . The vulnerability impacts and limited availability for affected systems. Impacting 84 products from hp, from hp, from hp and 81 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

Reported in 2024, this vulnerability emerged during an era marked by increased sophistication in supply chain attacks, cloud infrastructure vulnerabilities, and software-as-a-service (SaaS) security challenges. Security practices during this period emphasized zero-trust architectures, container security, and API protection.


Published

2024-03-22T18:15:07.987

Last Modified

2026-02-20T21:16:44.550

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-400

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System hp 1kr42a_firmware < 002.2349a Yes
Hardware hp 1kr42a - No
Operating System hp 1kr45a_firmware < 002.2349a Yes
Hardware hp 1kr45a - No
Operating System hp 1kr46a_firmware < 002.2349a Yes
Hardware hp 1kr46a - No
Operating System hp 1kr48a_firmware < 002.2349a Yes
Hardware hp 1kr48a - No
Operating System hp 1kr49a_firmware < 002.2349a Yes
Hardware hp 1kr49a - No
Operating System hp 1kr54a_firmware < 002.2349a Yes
Hardware hp 1kr54a - No
Operating System hp 1kr55a_firmware < 002.2349a Yes
Hardware hp 1kr55a - No
Operating System hp 1kr55b_firmware < 002.2349a Yes
Hardware hp 1kr55b - No
Operating System hp 1kr55d_firmware < 002.2349a Yes
Hardware hp 1kr55d - No
Operating System hp 1mr66a_firmware < 002.2349a Yes
Hardware hp 1mr66a - No
Operating System hp 1mr67a_firmware < 002.2349a Yes
Hardware hp 1mr67a - No
Operating System hp 1mr68a_firmware < 002.2349a Yes
Hardware hp 1mr68a - No
Operating System hp 1mr69a_firmware < 002.2349a Yes
Hardware hp 1mr69a - No
Operating System hp 1mr69c_firmware < 002.2349a Yes
Hardware hp 1mr69c - No
Operating System hp 1mr70a_firmware < 002.2349a Yes
Hardware hp 1mr70a - No
Operating System hp 1mr71a_firmware < 002.2349a Yes
Hardware hp 1mr71a - No
Operating System hp 1mr72a_firmware < 002.2349a Yes
Hardware hp 1mr72a - No
Operating System hp 1mr73a_firmware < 002.2349a Yes
Hardware hp 1mr73a - No
Operating System hp 1mr73d_firmware < 002.2349a Yes
Hardware hp 1mr73d - No
Operating System hp 1mr74a_firmware < 002.2349a Yes
Hardware hp 1mr74a - No
Operating System hp 1mr75a_firmware < 002.2349a Yes
Hardware hp 1mr75a - No
Operating System hp 1mr76a_firmware < 002.2349a Yes
Hardware hp 1mr76a - No
Operating System hp 1mr77a_firmware < 002.2349a Yes
Hardware hp 1mr77a - No
Operating System hp 1mr78a_firmware < 002.2349a Yes
Hardware hp 1mr78a - No
Operating System hp 1mr78b_firmware < 002.2349a Yes
Hardware hp 1mr78b - No
Operating System hp 1mr79a_firmware < 002.2349a Yes
Hardware hp 1mr79a - No
Operating System hp 1mr80d_firmware < 002.2349a Yes
Hardware hp 1mr80d - No
Operating System hp 3uk83a_firmware < 002.2349a Yes
Hardware hp 3uk83a - No
Operating System hp 3uk83b_firmware < 002.2349a Yes
Hardware hp 3uk83b - No
Operating System hp 3uk84a_firmware < 002.2349a Yes
Hardware hp 3uk84a - No
Operating System hp 3uk85d_firmware < 002.2349a Yes
Hardware hp 3uk85d - No
Operating System hp 3uk86b_firmware < 002.2349a Yes
Hardware hp 3uk86b - No
Operating System hp 3uk90d_firmware < 002.2349a Yes
Hardware hp 3uk90d - No
Operating System hp 3uk91b_firmware < 002.2349a Yes
Hardware hp 3uk91b - No
Operating System hp 3uk93d_firmware < 002.2349a Yes
Hardware hp 3uk93d - No
Operating System hp 3uk96d_firmware < 002.2349a Yes
Hardware hp 3uk96d - No
Operating System hp 3uk97d_firmware < 002.2349a Yes
Hardware hp 3uk97d - No
Operating System hp 3uk98d_firmware < 002.2349a Yes
Hardware hp 3uk98d - No
Operating System hp 3uk99d_firmware < 002.2349a Yes
Hardware hp 3uk99d - No
Operating System hp 3ul00d_firmware < 002.2349a Yes
Hardware hp 3ul00d - No
Operating System hp 3ul05b_firmware < 002.2349a Yes
Hardware hp 3ul05b - No
Operating System hp y8m28d_firmware < 002.2349a Yes
Hardware hp y8m28d - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For hp's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.