9.8
CVSSv3

CVE-2023-35175

Published: 30/06/2023 Updated: 07/07/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

This vulnerability allows remote malicious users to execute arbitrary code on affected installations of HP Color LaserJet Pro M479fdw printers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the processing of the NotifyTo element. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of the device.

Vulnerable Product Search on Vulmon Subscribe to Product

hp laserjet_pro_mfp_m478-m479_w1a75a_firmware

hp laserjet_pro_mfp_m478-m479_w1a76a_firmware

hp laserjet_pro_mfp_m478-m479_w1a77a_firmware

hp laserjet_pro_mfp_m478-m479_w1a78a_firmware

hp laserjet_pro_mfp_m478-m479_w1a79a_firmware

hp laserjet_pro_mfp_m478-m479_w1a80a_firmware

hp laserjet_pro_mfp_m478-m479_w1a81a_firmware

hp laserjet_pro_mfp_m478-m479_w1a82a_firmware

hp laserjet_pro_m453-m454_w1y40a_firmware

hp laserjet_pro_m453-m454_w1y41a_firmware

hp laserjet_pro_m453-m454_w1y43a_firmware

hp laserjet_pro_m453-m454_w1y44a_firmware

hp laserjet_pro_m453-m454_w1y45a_firmware

hp laserjet_pro_m453-m454_w1y46a_firmware

hp laserjet_pro_m453-m454_w1y47a_firmware

hp laserjet_pro_m304-m305_w1a46a_firmware

hp laserjet_pro_m304-m305_w1a47a_firmware

hp laserjet_pro_m304-m305_w1a48a_firmware

hp laserjet_pro_m304-m305_w1a66a_firmware

hp laserjet_pro_m404-m405_93m22a_firmware

hp laserjet_pro_m404-m405_w1a51a_firmware

hp laserjet_pro_m404-m405_w1a52a_firmware

hp laserjet_pro_m404-m405_w1a53a_firmware

hp laserjet_pro_m404-m405_w1a56a_firmware

hp laserjet_pro_m404-m405_w1a57a_firmware

hp laserjet_pro_m404-m405_w1a58a_firmware

hp laserjet_pro_m404-m405_w1a59a_firmware

hp laserjet_pro_m404-m405_w1a60a_firmware

hp laserjet_pro_m404-m405_w1a63a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a29a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a30a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a32a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a34a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a35a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a38a_firmware

hp laserjet_pro_mfp_m428-m429_w1a28a_firmware

hp laserjet_pro_mfp_m428-m429_w1a31a_firmware

hp laserjet_pro_mfp_m428-m429_w1a33a_firmware