5
CVSSv2

CVE-2004-1856

Published: 24/03/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

devices_update_printer_fw_upload.hts in HP Web JetAdmin 7.5.2546, when no password is set, allows remote malicious users to upload arbitrary files to the printer directory.

Vulnerable Product Search on Vulmon Subscribe to Product

hp web jetadmin 7.5.2546

Exploits

source: wwwsecurityfocuscom/bid/9971/info HP Web Jetadmin is prone to an issue which may permit remote users to upload arbitrary files to the management server This issue exists in the printer firmware update script Given the ability to place arbitrary files on the server to an attacker-specified location, it may be possible to execut ...