CVE-2023-1329

CRITICALCVSS 9.8/10EPSS 1.89%

Last modified

CVE-2023-1329 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability may lead to Buffer Overflow and/or Remote Code Execution when running HP Workpath solutions on potentially affected products.. EPSS estimates a 1.89% chance of exploitation in the next 30 days.

Description

A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability may lead to Buffer Overflow and/or Remote Code Execution when running HP Workpath solutions on potentially affected products.

Metrics

CVSS 3.1
9.8/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
1.89%

77.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Hp Laserjet Managed Mfp E62665 3gy14a FirmwareAll versions
Hp Laserjet Managed Mfp E62665 3gy15a FirmwareAll versions
Hp Laserjet Managed Mfp E62665 3gy16a FirmwareAll versions
Hp Laserjet Managed Mfp E62665 3gy17a FirmwareAll versions
Hp Laserjet Managed Mfp E62665 3gy18a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp 5800zf 49k96av FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp 5800zf 58r10a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp 5800zf 6qn29a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp 5800zf 6qn30a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp 5800zf 6qn31a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M577 B5l46a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M577 B5l47a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M577 B5l48a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M577 B5l54a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M578 7zu85a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M578 7zu86a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M578 7zu87a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M578 7zu88a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M681 J8a10a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M681 J8a11a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M681 J8a12a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M681 J8a13a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M682 J8a16a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M682 J8a17a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M776 T3u55a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp M776 T3u56a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp X57945 49k97av FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp X57945 6qp98a FirmwareAll versions
HpColor Laserjet Enterprise Flow Mfp X57945 6qp99a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800 Configurable 49k96av FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800 Configurable 58r10a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800 Configurable 6qn29a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800 Configurable 6qn30a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800 Configurable 6qn31a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800dn 49k96av FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800dn 58r10a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800dn 6qn29a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800dn 6qn30a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800dn 6qn31a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800f 49k96av FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800f 58r10a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800f 6qn29a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800f 6qn30a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800f 6qn31a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800zf 49k96av FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800zf 58r10a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800zf 6qn29a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800zf 6qn30a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 5800zf 6qn31a FirmwareAll versions
HpColor Laserjet Enterprise Mfp 6800 Configurable 49k84a FirmwareAll versions

Showing 50 of 957 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2023-1329?
A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability may lead to Buffer Overflow and/or Remote Code Execution when running HP Workpath solutions on potentially affected products.
How severe is CVE-2023-1329?
CVE-2023-1329 has a CVSS score of 9.8/10 (CRITICAL severity). The EPSS model estimates a 1.89% probability of exploitation in the next 30 days.
How do I fix CVE-2023-1329?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2023-1329?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST