Medium severity6.8NVD Advisory· Published May 23, 2024· Updated Jun 17, 2026
CVE-2024-5143
CVE-2024-5143
Description
A user with device administrative privileges can change existing SMTP server settings on the device, without having to re-enter SMTP server credentials. By redirecting send-to-email traffic to the new server, the original SMTP server credentials may potentially be exposed.
Affected products
10- HP Inc./Certain HP LaserJet Pro Printersv5Range: See HP Security Bulletin reference for affected versions.
Patches
Vulnerability mechanics
References
1- support.hp.com/us-en/document/ish_10643804-10643841-16/HPSBPI03941nvdVendor Advisory
News mentions
0No linked articles in our index yet.