Remote Code Execution Vulnerability in HP Point of Sale Software
CVE-2014-7893

Currently unrated

Key Information:

Vendor
HP
Vendor
CVE Published:
9 March 2015

Summary

The OLE Point of Sale (OPOS) drivers prior to version 1.13.003 installed on HP Point of Sale Windows PCs are susceptible to a vulnerability that allows remote attackers to execute arbitrary code. This vulnerability specifically affects various printer types including PUSB Thermal Receipt printers and SerialUSB Thermal Receipt printers. The issue arises from the OPOSCheckScanner.ocx file, which can be exploited by attackers to compromise systems, necessitating urgent security measures for affected installations.

References

EPSS Score

46% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.