CVE-2023-5113
Severity CVSS v4.0:
Pending analysis
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
04/10/2023
Last modified:
11/10/2023
Description
Certain HP Enterprise LaserJet and HP LaserJet Managed Printers are potentially vulnerable to denial of service due to WS-Print request and potential injections of Cross Site Scripting via jQuery-UI.
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:* | 5.7 (excluding) | |
| cpe:2.3:h:hp:color_laserjet_enterprise_5700_49k98a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_5700_6qn28a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_6700_49l00a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_6700_4y280a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_6700_58m42a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_6700_6qn33a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_6701_49l00a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_6701_4y280a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_6701_58m42a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_6701_6qn33a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_flow_mfp_5800_58r10a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_flow_mfp_5800_6qn29a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_flow_mfp_5800_6qn30a:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:hp:color_laserjet_enterprise_flow_mfp_5800_6qn31a:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



