CVE-2012-5221
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD
Description
Directory traversal vulnerability in the PostScript Interpreter, as used on the HP LaserJet 4xxx, 5200, 90xx, M30xx, M4345, M50xx, M90xx, P3005, and P4xxx; LaserJet Enterprise P3015; Color LaserJet 3xxx, 47xx, 5550, 9500, CM60xx, CP35xx, CP4005, and CP6015; Color LaserJet Enterprise CP4xxx; and 9250c Digital Sender with model-dependent firmware through 52.x allows remote attackers to read arbitrary files via unknown vectors.
Affected (38)
Products: Hp: Color Laserjet 3000, Color Laserjet 3800, Color Laserjet 4700, Color Laserjet 4730 Mfp, Color Laserjet 5550, Color Laserjet 9500 Mfp, Color Laserjet Cm6030 Mfp, Color Laserjet Cm6040 Mfp, Color Laserjet Cp3505, Color Laserjet Cp3525, Color Laserjet Cp4005, Color Laserjet Cp6015, Color Laserjet Enterprise Cp4025, Color Laserjet Enterprise Cp4525, Digital Sender 9250c, Laserjet 4240, Laserjet 4250, Laserjet 4345 Mfp, Laserjet 4350, Laserjet 5200l, Laserjet 5200n, Laserjet 9040, Laserjet 9040 Mfp, Laserjet 9050, Laserjet 9050 Mfp, Laserjet Enterprise P3015, Laserjet M3027 Mfp, Laserjet M3035 Mfp, Laserjet M4345 Mfp, Laserjet M5025 Mfp, Laserjet M5035 Mfp, Laserjet M9040 Mpf, Laserjet M9050 Mpf, Laserjet P3005, Laserjet P4014, Laserjet P4015, Laserjet P4515
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version q7534a | |
| Version q5981a | |
| Version q7492a | |
| Version cb480a | |
| Version q3714a | |
| Version c8549a | |
| Version ce664a | |
| Version q3939a | |
| Version cb442a | |
| Version cc469a | |
| Version cb503a | |
| Version q3932a | |
| Version cc490a | |
| Version cc493a | |
| Version cb472a | |
| Version q7785a | |
| Version q5400a | |
| Version q3942a | |
| Version q5407a | |
| Version q7543a | |
| Version q7543a | |
| Version q7697a | |
| Version q3721a | |
| Version q7697a | |
| Version q3721a | |
| Version ce526a | |
| Version cb416a | |
| Version cb414a | |
| Version cb425a | |
| Version q7840a | |
| Version q7829a | |
| Version cc394a | |
| Version cc395a | |
| Version q7812a | |
| Version cb507a | |
| Version cb509a | |
| Version cb514a |
References (4)
Source: hp-security-alert@hp.com
Source: hp-security-alert@hp.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.