CVE-2017-2743
Last modified
CVE-2017-2743 is a vulnerability of currently unknown severity. HP has identified a potential security vulnerability with HP Enterprise LaserJet Printers and MFPs, HP OfficeJet Enterprise Color Printers and MFP, HP PageWide Color Printers and MPS before 2308214_000901, 2308214_000900, and other firmware versions. The vulnerability could be exploited to perform a cross site scripting (XSS) attack.. EPSS estimates a 1.27% chance of exploitation in the next 30 days.
Description
HP has identified a potential security vulnerability with HP Enterprise LaserJet Printers and MFPs, HP OfficeJet Enterprise Color Printers and MFP, HP PageWide Color Printers and MPS before 2308214_000901, 2308214_000900, and other firmware versions. The vulnerability could be exploited to perform a cross site scripting (XSS) attack.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hp | Cc419a Firmware | < 2308214_000901 |
| Hp | Cc420a Firmware | < 2308214_000901 |
| Hp | Cc421a Firmware | < 2308214_000901 |
| Hp | Ce709a Firmware | < 2308214_000900 |
| Hp | Ce708a Firmware | < 2308214_000900 |
| Hp | Ce707a Firmware | < 2308214_000900 |
| Hp | Ce503a Firmware | < 2308214_000904 |
| Hp | Ce504a Firmware | < 2308214_000904 |
| Hp | Ce738a Firmware | < 2308214_000904 |
| Hp | Ce989a Firmware | < 2308214_000926 |
| Hp | Ce990a Firmware | < 2308214_000926 |
| Hp | Ce991a Firmware | < 2308214_000926 |
| Hp | Ce992a Firmware | < 2308214_000926 |
| Hp | Ce993a Firmware | < 2308214_000926 |
| Hp | Ce994a Firmware | < 2308214_000926 |
| Hp | Ce995a Firmware | < 2308214_000926 |
| Hp | Ce996a Firmware | < 2308214_000926 |
| Hp | Cf081a Firmware | < 2308214_000927 |
| Hp | Cf082a Firmware | < 2308214_000927 |
| Hp | Cf083a Firmware | < 2308214_000927 |
| Hp | L2717a Firmware | < 2308214_000903 |
| Hp | Cd644a Firmware | < 2308214_000925 |
| Hp | Cd645a Firmware | < 2308214_000925 |
| Hp | Cf116a Firmware | < 2308214_000913 |
| Hp | Cf117a Firmware | < 2308214_000913 |
| Hp | Cc522a Firmware | < 2308214_000932 |
| Hp | Cc523a Firmware | < 2308214_000932 |
| Hp | Cc524a Firmware | < 2308214_000932 |
| Hp | Cf235a Firmware | < 2308214_000922 |
| Hp | Cf236a Firmware | < 2308214_000922 |
| Hp | Cf238a Firmware | < 2308214_000922 |
| Hp | Cd646a Firmware | < 2308214_000925 |
| Hp | Cf118a Firmware | < 2308214_000913 |
| Hp | Cf066a Firmware | < 2308214_000921 |
| Hp | Cf067a Firmware | < 2308214_000921 |
| Hp | Cf068a Firmware | < 2308214_000921 |
| Hp | Cf069a Firmware | < 2308214_000921 |
| Hp | D3l08a Firmware | < 2308214_000931 |
| Hp | D3l09a Firmware | < 2308214_000931 |
| Hp | D3l10a Firmware | < 2308214_000931 |
| Hp | A2w77a Firmware | < 2308214_000930 |
| Hp | A2w78a Firmware | < 2308214_000930 |
| Hp | A2w79a Firmware | < 2308214_000930 |
| Hp | A2w76a Firmware | < 2308214_000928 |
| Hp | A2w75a Firmware | < 2308214_000928 |
| Hp | D7p70a Firmware | < 2308214_000928 |
| Hp | D7p71a Firmware | < 2308214_000928 |
| Hp | Cf367a Firmware | < 2308214_000916 |
| Hp | Cz244a Firmware | < 2308214_000920 |
| Hp | Cz245a Firmware | < 2308214_000920 |
Showing 50 of 88 affected configurations. See NVD for the full list.
References
- https://support.hp.com/us-en/document/c05541569Vendor Advisory
- https://support.hp.com/us-en/document/c05541569Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-2743?
How severe is CVE-2017-2743?
How do I fix CVE-2017-2743?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-2737VCM5010 with software versions earlier before V100R002C50SPC…
- CVE-2017-2738VCM5010 with software versions earlier before V100R002C50SPC…
- CVE-2017-2739The upgrade package of Huawei Vmall APP Earlier than HwVmall…
- CVE-2017-2740A potential security vulnerability has been identified with …
- CVE-2017-2741A potential security vulnerability has been identified with …
- CVE-2017-2742A potential security vulnerability has been identified with …
- CVE-2017-2744The vulnerability allows attacker to extract binaries into p…
- CVE-2017-2745Potential security vulnerabilities have been identified with…
- CVE-2017-2746Potential security vulnerabilities have been identified with…
- CVE-2017-2747HP has identified a potential security vulnerability before …
- CVE-2017-2748A potential security vulnerability caused by the use of inse…
- CVE-2017-2750Insufficient Solution DLL Signature Validation allows potent…
Are you affected by CVE-2017-2743?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
