CVE-2022-4894

HIGHCVSS 7.3/10EPSS 0.19%

Last modified

CVE-2022-4894 is a high-severity vulnerability rated 7.3/10 on the CVSS scale. Certain HP and Samsung Printer software packages may potentially be vulnerable to elevation of privilege due to Uncontrolled Search Path Element.. EPSS estimates a 0.19% chance of exploitation in the next 30 days.

Description

Certain HP and Samsung Printer software packages may potentially be vulnerable to elevation of privilege due to Uncontrolled Search Path Element.

Metrics

CVSS 3.1
7.3/10

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

EPSS Probability
0.19%

8.6th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Hp2zn49a FirmwareAll versions
Hp2zn50a FirmwareAll versions
Hp2ky38a FirmwareAll versions
HpW7u01a FirmwareAll versions
HpW7u02a FirmwareAll versions
Hp1vr14a FirmwareAll versions
Hp7uq76a FirmwareAll versions
Hp7ab26a FirmwareAll versions
Hp7zb25a FirmwareAll versions
Hp7zb72a FirmwareAll versions
Hp8af49a FirmwareAll versions
Hp8af50a FirmwareAll versions
Hp8af51a FirmwareAll versions
Hp8af52a FirmwareAll versions
Hp7zb20a FirmwareAll versions
Hp7zb19a FirmwareAll versions
Hp7zb21a FirmwareAll versions
Hp4zb81a FirmwareAll versions
Hp5ue14a FirmwareAll versions
Hp209u7a FirmwareAll versions
Hp4zb79a FirmwareAll versions
Hp4zb80a FirmwareAll versions
Hp4zb92a FirmwareAll versions
Hp4zb93a FirmwareAll versions
Hp4zb82a FirmwareAll versions
Hp6hu10a FirmwareAll versions
Hp5ue15a FirmwareAll versions
Hp4zb83a FirmwareAll versions
Hp6hu11a FirmwareAll versions
Hp4zb85a FirmwareAll versions
Hp4zb87a FirmwareAll versions
Hp4zb86a FirmwareAll versions
Hp9vv52a FirmwareAll versions
Hp4zb84a FirmwareAll versions
Hp6hu12a FirmwareAll versions
Hp4zb91a FirmwareAll versions
Hp4zb88a FirmwareAll versions
Hp4zb89a FirmwareAll versions
Hp4zb90a FirmwareAll versions
Hp4zb94a FirmwareAll versions
Hp4zb95a FirmwareAll versions
Hp4zb96a FirmwareAll versions
Hp4zb97a FirmwareAll versions
Hp6hu08a FirmwareAll versions
Hp6hu09a FirmwareAll versions
Hp714z6a FirmwareAll versions
Hp714z7a FirmwareAll versions
Hp714z8a FirmwareAll versions
Hp714z9a FirmwareAll versions
Hp715a0a FirmwareAll versions

Showing 50 of 1023 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2022-4894?
Certain HP and Samsung Printer software packages may potentially be vulnerable to elevation of privilege due to Uncontrolled Search Path Element.
How severe is CVE-2022-4894?
CVE-2022-4894 has a CVSS score of 7.3/10 (HIGH severity). The EPSS model estimates a 0.19% probability of exploitation in the next 30 days.
How do I fix CVE-2022-4894?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2022-4894?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST