Cross-Site Scripting Vulnerability in HP Printers and Multifunction Devices
CVE-2019-18914
Key Information:
- Vendor
- HP
- Vendor
- CVE Published:
- 9 November 2021
Summary
A security vulnerability has been identified that affects certain HP printers and multifunction devices, allowing an attacker to execute Cross-Site Scripting (XSS) attacks. This can occur when a user clicks on a third-party malicious link, potentially leading to undesired actions performed within the client's browser. This vulnerability highlights significant security concerns for users of affected HP printing devices.
Affected Version(s)
HP Color LaserJet Managed Printers, HP Color LaserJet Enterprise Printers before FS3: 2309025_582081
HP Color LaserJet Managed Printers, HP Color LaserJet Enterprise Printers before FS3: 2309025_582082
HP Color LaserJet Managed Printers, HP Color LaserJet Enterprise Printers before FS3: 2309025_582083
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved