CVE-2019-18917
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/03/2020
Last modified:
24/08/2020
Description
A potential security vulnerability has been identified for certain HP Printers and All-in-Ones that would allow bypassing account lockout.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM
Base Score 2.0
6.40
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:hp:envy_5000_m2u85a_firmware:*:*:*:*:*:*:*:* | 003.2008a (excluding) | |
| cpe:2.3:h:hp:envy_5000_m2u85a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:envy_5000_m2u85b_firmware:*:*:*:*:*:*:*:* | 003.2008a (excluding) | |
| cpe:2.3:h:hp:envy_5000_m2u85b:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:envy_5000_m2u91a_firmware:*:*:*:*:*:*:*:* | 003.2008a (excluding) | |
| cpe:2.3:h:hp:envy_5000_m2u91a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:envy_5000_m2u94b_firmware:*:*:*:*:*:*:*:* | 003.2008a (excluding) | |
| cpe:2.3:h:hp:envy_5000_m2u94b:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:envy_5000_z4a54a_firmware:*:*:*:*:*:*:*:* | 003.2008a (excluding) | |
| cpe:2.3:h:hp:envy_5000_z4a54a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:envy_5000_z4a74a_firmware:*:*:*:*:*:*:*:* | 003.2008a (excluding) | |
| cpe:2.3:h:hp:envy_5000_z4a74a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:deskjet_ink_advantage_5000_m2u86a_firmware:*:*:*:*:*:*:*:* | 003.2008a (excluding) | |
| cpe:2.3:h:hp:deskjet_ink_advantage_5000_m2u86a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:hp:deskjet_ink_advantage_5000_m2u89b_firmware:*:*:*:*:*:*:*:* | 003.2008a (excluding) |
To consult the complete list of CPE names with products and versions, see this page



