← volver
CVE-2024-2209

HP Printer Firmware Update Utility for Certain HP DeskJet Printers - Potential Execution of Arbitrary Code

CVSS 6.3 MEDIUMEPSS 0.2%CWE-94
A user with administrative privileges can create a compromised dll file of the same name as the original dll within the HP printer’s Firmware Update Utility (FUU) bundle and place it in the Microsoft Windows default downloads directory which can lead to potential arbitrary code execution.
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →