Remote Code Execution Vulnerability in HP Point of Sale OLE Drivers
CVE-2014-7892
Currently unrated
Summary
The OLE Point of Sale (OPOS) drivers for HP Point of Sale systems prior to version 1.13.003 are susceptible to vulnerabilities that enable remote attackers to execute arbitrary code. This exploitation can occur through various interfaces, including OPOSMSR.ocx, affecting multiple magnetic stripe readers and POS keyboards. Attackers can leverage these flaws to compromise system integrity and execute unauthorized commands, posing significant security risks to affected installations.
References
EPSS Score
46% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved