CVE-2019-6332
4.8
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Exploitability: 1.7 / Impact: 2.7
Source: NVD
Description
A potential security vulnerability has been identified with certain HP InkJet printers. The vulnerability could be exploited to allow cross-site scripting (XSS). Affected products and versions include: HP DeskJet 2600 All-in-One Printer series model numbers 4UJ28B, V1N01A - V1N08A, Y5H60A - Y5H80A; HP DeskJet Ink Advantage 2600 All-in-One Printer series model numbers V1N02A - V1N02B, Y5Z00A - Y5Z04B; HP DeskJet Ink Advantage 5000 All-in-One Printer series model numbers M2U86A - M2U89B; HP DeskJet Ink Advantage 5200 All-in-One Printer series model numbers M2U76A - M2U78B; HP ENVY 5000 All-in-One Printer series model numbers M2U85A - M2U85B, M2U91A - M2U94B, Z4A54A - Z4A74A; HP ENVY Photo 6200 All-in-One Printer series model numbers K7G18A-K7G26B, K7S21B, Y0K13D - Y0K15A; HP ENVY Photo 7100 All-in-One Printer series model numbers 3XD89A, K7G93A-K7G99A, Z3M37A - Z3M52A; HP ENVY Photo 7800 All-in-One Printer series model numbers K7R96A, K7S00A - K7S10D, Y0G42D - Y0G52B; HP Ink Tank Wireless 410 series model numbers Z4B53A - Z4B55A, Z6Z95A - Z6Z99A, 4DX94A - 4DX95A, 4YF79A, Z7A01A; HP OfficeJet 5200 All-in-One Printer series model numbers M2U75A, M2U81A-M2U84B, Z4B12A - Z4B14A, Z4B27A - Z4B29A; HP Smart Tank Wireless 450 series model numbers Z4B56A, Z6Z96A - Z6Z98A.
Affected (52)
Products: Hp: Deskjet 2600 4uj28b Firmware, Deskjet 2600 V1n01a Firmware, Deskjet 2600 V1n08a Firmware, Deskjet 2600 Y5h60a Firmware, Deskjet 2600 Y5h80a Firmware, Deskjet Ink Advantage 2600 V1n02a Firmware, Deskjet Ink Advantage 2600 V1n02b Firmware, Deskjet Ink Advantage 2600 Y5z00a Firmware, Deskjet Ink Advantage 2600 Y5z04b Firmware, Deskjet Ink Advantage 5000 M2u86a Firmware, Deskjet Ink Advantage 5000 M2u89b Firmware, Deskjet Ink Advantage 5200 M2u76a Firmware, Deskjet Ink Advantage 5200 M2u78b Firmware, Envy 5000 M2u85a Firmware, Envy 5000 M2u85b Firmware, Envy 5000 M2u91a Firmware, Envy 5000 M2u94b Firmware, Envy 5000 Z4a54a Firmware, Envy 5000 Z4a74a Firmware, Envy Photo 6200 K7g18a Firmware, Envy Photo 6200 K7g26b Firmware, Envy Photo 6200 K7s21b Firmware, Envy Photo 6200 Y0k13d Firmware, Envy Photo 6200 Y0k15a Firmware, Envy Photo 7100 3xd89a Firmware, Envy Photo 7100 K7g93a Firmware, Envy Photo 7100 K7g99a Firmware, Envy Photo 7100 Z3m37a Firmware, Envy Photo 7100 Z3m52a Firmware, Envy Photo 7800 K7r96a Firmware, Envy Photo 7800 K7s00a Firmware, Envy Photo 7800 K7s10d Firmware, Envy Photo 7800 Y0g42d Firmware, Envy Photo 7800 Y0g52b Firmware, Ink Tank Wireless 410 Z4b53a Firmware, Ink Tank Wireless 410 Z4b55a Firmware, Ink Tank Wireless 410 Z6z95a Firmware, Ink Tank Wireless 410 Z6z99a Firmware, Ink Tank Wireless 410 4dx94a Firmware, Ink Tank Wireless 410 4dx95a Firmware, Ink Tank Wireless 410 4yf79a Firmware, Ink Tank Wireless 410 Z7a01a Firmware, Officejet 5200 M2u75a Firmware, Officejet 5200 M2u81a Firmware, Officejet 5200 M2u84b Firmware, Officejet 5200 Z4b12a Firmware, Officejet 5200 Z4b14a Firmware, Officejet 5200 Z4b27a Firmware, Officejet 5200 Z4b29a Firmware, Smart Tank Wireless 450 Z4b56a Firmware, Smart Tank Wireless 450 Z6z96a Firmware, Smart Tank Wireless 450 Z6z98a Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet 2600 4uj28b | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet 2600 V1n01a | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet 2600 V1n08a | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet 2600 Y5h60a | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet 2600 Y5h80a | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet Ink Advantage 2600 V1n02a | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet Ink Advantage 2600 V1n02b | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet Ink Advantage 2600 Y5z00a | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1923 |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet Ink Advantage 2600 Y5z04b | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet Ink Advantage 5000 M2u86a | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet Ink Advantage 5000 M2u89b | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet Ink Advantage 5200 M2u76a | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Deskjet Ink Advantage 5200 M2u78b | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy 5000 M2u85a | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy 5000 M2u85b | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy 5000 M2u91a | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy 5000 M2u94b | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy 5000 Z4a54a | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy 5000 Z4a74a | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 6200 K7g18a | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 6200 K7g26b | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 6200 K7s21b | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 6200 Y0k13d | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 6200 Y0k15a | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7100 3xd89a | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7100 K7g93a | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7100 K7g99a | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7100 Z3m37a | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7100 Z3m52a | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7800 K7r96a | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7800 K7s00a | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7800 K7s10d | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7800 Y0g42d | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Envy Photo 7800 Y0g52b | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Ink Tank Wireless 410 Z4b53a | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Ink Tank Wireless 410 Z4b55a | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Ink Tank Wireless 410 Z6z95a | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Ink Tank Wireless 410 Z6z99a | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Ink Tank Wireless 410 4dx94a | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Ink Tank Wireless 410 4dx95a | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Ink Tank Wireless 410 4yf79a | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Ink Tank Wireless 410 Z7a01a | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Officejet 5200 M2u75a | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Officejet 5200 M2u81a | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Officejet 5200 M2u84b | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Officejet 5200 Z4b12a | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Officejet 5200 Z4b14a | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Officejet 5200 Z4b27a | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 003.1925a |
| Running on/with | Platform Versions |
|---|---|
Hp Officejet 5200 Z4b29a | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Smart Tank Wireless 450 Z4b56a | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Smart Tank Wireless 450 Z6z96a | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1924 |
| Running on/with | Platform Versions |
|---|---|
Hp Smart Tank Wireless 450 Z6z98a | All versions |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.