CVE-2018-5923
UnknownEPSS 2.61%
Last modified
CVE-2018-5923 is a vulnerability of currently unknown severity. In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.. EPSS estimates a 2.61% chance of exploitation in the next 30 days.
Description
In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hp | Color Laserjet Cm4540 Mfp Firmware | < 2308974_579754 |
| Hp | Color Laserjet Cp5525 Firmware | < 2308974_579753 |
| Hp | Color Laserjet Enterprise Flow Mfp M681f Firmware | < 2406087_000017 |
| Hp | Color Laserjet Enterprise Flow Mfp M681z Firmware | < 2406087_000017 |
| Hp | Color Laserjet Enterprise Flow Mfp M682z Firmware | < 2406087_000017 |
| Hp | Color Laserjet Enterprise M552 Firmware | < 2308974_579763 |
| Hp | Color Laserjet Enterprise M553 Firmware | < 2308974_579763 |
| Hp | Color Laserjet Enterprise M651 Firmware | < 2406048_029632 |
| Hp | Color Laserjet Enterprise M652n Firmware | < 2406087_000016 |
| Hp | Color Laserjet Enterprise M652dn Firmware | < 2406087_000016 |
| Hp | Color Laserjet Enterprise M653dn Firmware | < 2406087_000016 |
| Hp | Color Laserjet Enterprise M653dh Firmware | < 2406087_000016 |
| Hp | Color Laserjet Enterprise M653x Firmware | < 2406087_000016 |
| Hp | Color Laserjet Enterprise M750 Firmware | < 2308974_579776 |
| Hp | Color Laserjet Enterprise Mfp M577 Firmware | < 2406048_029627 |
| Hp | Color Laserjet Enterprise Mfp M681dh Firmware | < 2406087_000017 |
| Hp | Color Laserjet Enterprise Mfp M681f Firmware | < 2406087_000017 |
| Hp | Color Laserjet Enterprise Mfp M682dh Firmware | < 2406087_000017 |
| Hp | Color Laserjet M680 Firmware | < 2406048_029633 |
| Hp | Color Laserjet Managed E55040dw Firmware | < 2406048_029643 |
| Hp | Color Laserjet Managed E65050dn Firmware | < 2406087_000016 |
| Hp | Color Laserjet Managed E65060dn Firmware | < 2405130_000068 |
| Hp | Color Laserjet Managed E65060x Firmware | < 2405130_000068 |
| Hp | Color Laserjet Managed Flow Mfp E57540c Firmware | < 2406048_029627 |
| Hp | Color Laserjet Managed Flow Mfp E67550f Firmware | < 2406087_000017 |
| Hp | Color Laserjet Managed Flow Mfp E67560z Firmware | < 2406087_000017 |
| Hp | Color Laserjet Managed Flow Mfp E77822 Firmware | < 2406048_029616 |
| Hp | Color Laserjet Managed Flow Mfp E77825 Firmware | < 2406048_029616 |
| Hp | Color Laserjet Managed Flow Mfp E77830z Firmware | < 2406048_029616 |
| Hp | Color Laserjet Managed Flow Mfp E87640 Firmware | < 2406048_029615 |
| Hp | Color Laserjet Managed Flow Mfp E87650 Firmware | < 2406048_029615 |
| Hp | Color Laserjet Managed Flow Mfp E87660z Firmware | < 2406048_029615 |
| Hp | Color Laserjet Managed Flow Mfp E87640z Firmware | < 2406048_029615 |
| Hp | Color Laserjet Managed Mfp E57540dn Firmware | < 2406048_029627 |
| Hp | Color Laserjet Managed Mfp E67550dh Firmware | < 2406087_000017 |
| Hp | Color Laserjet Managed Mfp E67560dh Firmware | < 2406087_000017 |
| Hp | Color Laserjet Managed Mfp E77822 Firmware | < 2406048_029616 |
| Hp | Color Laserjet Managed Mfp E77825 Firmware | < 2406048_029616 |
| Hp | Color Laserjet Managed Mfp E77830dn Firmware | < 2406048_029616 |
| Hp | Color Laserjet Managed Mfp E87640 Firmware | < 2406048_029615 |
| Hp | Color Laserjet Managed Mfp E87650 Firmware | < 2406048_029615 |
| Hp | Color Laserjet Managed Mfp E87660dn Firmware | < 2406048_029615 |
| Hp | Color Laserjet Managed Mfp E87640dn Firmware | < 2406048_029615 |
| Hp | Digital Sender Flow 8500 Fn2 Document Capture Workstation Firmware | < 2406048_029623 |
| Hp | Laserjet Enterprise 500 Color Mfp M575dn Firmware | < 2406048_029634 |
| Hp | Laserjet Enterprise 500 Mfp M525f Firmware | < 2406048_029635 |
| Hp | Laserjet Enterprise 600 M601 Firmware | < 2308974_579777 |
| Hp | Laserjet Enterprise 600 M602 Firmware | < 2308974_579777 |
| Hp | Laserjet Enterprise 600 M603xh Firmware | < 2308974_579777 |
| Hp | Laserjet Enterprise 700 Color Mfp M775 Firmware | < 2308974_579779 |
Showing 50 of 166 affected configurations. See NVD for the full list.
References
- https://support.hp.com/us-en/document/c06169434Vendor Advisory
- https://support.hp.com/us-en/document/c06169434Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-5923?
In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.
How severe is CVE-2018-5923?
Severity scoring for CVE-2018-5923 is pending analysis. The EPSS model estimates a 2.61% probability of exploitation in the next 30 days.
How do I fix CVE-2018-5923?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-5915Exception in Modem IP stack while processing IPv6 packet in …
- CVE-2018-5916Buffer overread while decoding PDP modify request or network…
- CVE-2018-5917Possible buffer overflow in OEM crypto function due to impro…
- CVE-2018-5918Possible buffer overflow in DRM Trusted application due to l…
- CVE-2018-5919In all android releases(Android for MSM, Firefox OS for MSM,…
- CVE-2018-5921A potential security vulnerability has been identified with …
- CVE-2018-5924A security vulnerability has been identified with certain HP…
- CVE-2018-5925A security vulnerability has been identified with certain HP…
- CVE-2018-5926A potential vulnerability has been identified in HP Remote G…
- CVE-2018-5927HP Support Assistant before 8.7.50.3 allows an unauthorized …
- CVE-2018-5950Cross-site scripting (XSS) vulnerability in the web UI in Ma…6.1
- CVE-2018-5951An issue was discovered in Mikrotik RouterOS. Crafting a pac…7.5
Are you affected by CVE-2018-5923?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
