CVE-2017-2750
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
23/01/2018
Last modified:
21/02/2018
Description
Insufficient Solution DLL Signature Validation allows potential execution of arbitrary code in HP LaserJet Enterprise printers, HP PageWide Enterprise printers, HP LaserJet Managed printers, HP OfficeJet Enterprise printers before 2308937_578479, 2405087_018548, and other firmware versions.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:hp:l2683a_firmware:*:*:*:*:*:*:*:* | 2405087_018552 (excluding) | |
| cpe:2.3:h:hp:l2683a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:l2717a_firmware:*:*:*:*:*:*:*:* | 2308937_578486 (excluding) | |
| cpe:2.3:h:hp:l2717a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:l2762a_firmware:*:*:*:*:*:*:*:* | 2308937_578483 (excluding) | |
| cpe:2.3:h:hp:l2762a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:l2762a_firmware:*:*:*:*:*:*:*:* | 2405087_018553 (excluding) | |
| cpe:2.3:h:hp:l2762a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:j7z13a_firmware:*:*:*:*:*:*:*:* | 2405087_018548 (excluding) | |
| cpe:2.3:h:hp:j7z13a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:z5g79a_firmware:*:*:*:*:*:*:*:* | 2405087_018548 (excluding) | |
| cpe:2.3:h:hp:z5g79a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:l3u42a_firmware:*:*:*:*:*:*:*:* | 2405129_000066 (excluding) | |
| cpe:2.3:h:hp:l3u42a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:l3u42a_firmware:*:*:*:*:*:*:*:* | 2308937_578492 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



