CVE-2018-5923

UnknownEPSS 2.61%

Last modified

CVE-2018-5923 is a vulnerability of currently unknown severity. In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.. EPSS estimates a 2.61% chance of exploitation in the next 30 days.

Description

In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.

Metrics

EPSS Probability
2.61%

83.5th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
HpColor Laserjet Cm4540 Mfp Firmware< 2308974_579754
HpColor Laserjet Cp5525 Firmware< 2308974_579753
HpColor Laserjet Enterprise Flow Mfp M681f Firmware< 2406087_000017
HpColor Laserjet Enterprise Flow Mfp M681z Firmware< 2406087_000017
HpColor Laserjet Enterprise Flow Mfp M682z Firmware< 2406087_000017
HpColor Laserjet Enterprise M552 Firmware< 2308974_579763
HpColor Laserjet Enterprise M553 Firmware< 2308974_579763
HpColor Laserjet Enterprise M651 Firmware< 2406048_029632
HpColor Laserjet Enterprise M652n Firmware< 2406087_000016
HpColor Laserjet Enterprise M652dn Firmware< 2406087_000016
HpColor Laserjet Enterprise M653dn Firmware< 2406087_000016
HpColor Laserjet Enterprise M653dh Firmware< 2406087_000016
HpColor Laserjet Enterprise M653x Firmware< 2406087_000016
HpColor Laserjet Enterprise M750 Firmware< 2308974_579776
HpColor Laserjet Enterprise Mfp M577 Firmware< 2406048_029627
HpColor Laserjet Enterprise Mfp M681dh Firmware< 2406087_000017
HpColor Laserjet Enterprise Mfp M681f Firmware< 2406087_000017
HpColor Laserjet Enterprise Mfp M682dh Firmware< 2406087_000017
HpColor Laserjet M680 Firmware< 2406048_029633
HpColor Laserjet Managed E55040dw Firmware< 2406048_029643
HpColor Laserjet Managed E65050dn Firmware< 2406087_000016
HpColor Laserjet Managed E65060dn Firmware< 2405130_000068
HpColor Laserjet Managed E65060x Firmware< 2405130_000068
HpColor Laserjet Managed Flow Mfp E57540c Firmware< 2406048_029627
HpColor Laserjet Managed Flow Mfp E67550f Firmware< 2406087_000017
HpColor Laserjet Managed Flow Mfp E67560z Firmware< 2406087_000017
HpColor Laserjet Managed Flow Mfp E77822 Firmware< 2406048_029616
HpColor Laserjet Managed Flow Mfp E77825 Firmware< 2406048_029616
HpColor Laserjet Managed Flow Mfp E77830z Firmware< 2406048_029616
HpColor Laserjet Managed Flow Mfp E87640 Firmware< 2406048_029615
HpColor Laserjet Managed Flow Mfp E87650 Firmware< 2406048_029615
HpColor Laserjet Managed Flow Mfp E87660z Firmware< 2406048_029615
HpColor Laserjet Managed Flow Mfp E87640z Firmware< 2406048_029615
HpColor Laserjet Managed Mfp E57540dn Firmware< 2406048_029627
HpColor Laserjet Managed Mfp E67550dh Firmware< 2406087_000017
HpColor Laserjet Managed Mfp E67560dh Firmware< 2406087_000017
HpColor Laserjet Managed Mfp E77822 Firmware< 2406048_029616
HpColor Laserjet Managed Mfp E77825 Firmware< 2406048_029616
HpColor Laserjet Managed Mfp E77830dn Firmware< 2406048_029616
HpColor Laserjet Managed Mfp E87640 Firmware< 2406048_029615
HpColor Laserjet Managed Mfp E87650 Firmware< 2406048_029615
HpColor Laserjet Managed Mfp E87660dn Firmware< 2406048_029615
HpColor Laserjet Managed Mfp E87640dn Firmware< 2406048_029615
HpDigital Sender Flow 8500 Fn2 Document Capture Workstation Firmware< 2406048_029623
HpLaserjet Enterprise 500 Color Mfp M575dn Firmware< 2406048_029634
HpLaserjet Enterprise 500 Mfp M525f Firmware< 2406048_029635
HpLaserjet Enterprise 600 M601 Firmware< 2308974_579777
HpLaserjet Enterprise 600 M602 Firmware< 2308974_579777
HpLaserjet Enterprise 600 M603xh Firmware< 2308974_579777
HpLaserjet Enterprise 700 Color Mfp M775 Firmware< 2308974_579779

Showing 50 of 166 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2018-5923?
In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.
How severe is CVE-2018-5923?
Severity scoring for CVE-2018-5923 is pending analysis. The EPSS model estimates a 2.61% probability of exploitation in the next 30 days.
How do I fix CVE-2018-5923?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2018-5923?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST