QID 43901

Date Published: 2022-04-25

QID 43901: HP Printers Multiple Vulnerabilities (HPSBPI03782)

A potential security vulnerability has been identified with certain HP LaserJet printers. The vulnerability could be exploited for Information Disclosure and Denial of Service, Buffer Overflow.

Affected Products:
Hp PageWide Pro 552dw Model:D3Q17A
HP PageWide Pro 477dw Model:D3Q20A
HP PageWide Pro 577dw Model:D3Q21A
HP PageWide Pro 452dn Model:D3Q15A
HP Color LaserJet Pro M453 - M454 Model:W1Y44A

QID Detection Logic :
The QID checks for vulnerable models of HP Printers.

Note: QID is marked practice as there is no check for firmware version.

Successfully exploiting this vulnerability might allow a remote attacker to gain access to sensitive information and perform buffer overflow and denial of service.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5.4 severity.
  • Solution
    Vendor has released an update version of firmware to fix this vulnerability.

    Customers are advised to refer to HPSBPI03782 for more information.

    CVEs related to QID 43901

    Software Advisories
    Advisory ID Software Component Link
    HPSBPI03782 URL Logo support.hp.com/us-en/document/ish_5972076-5972161-16/hpsbpi03782