T0g70a Firmware
by Microfocus
CVEs (8)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2017-2741 | Cri | 0.73 | 9.8 | 0.85 | Jan 23, 2018 | A potential security vulnerability has been identified with HP PageWide Printers, HP OfficeJet Pro Printers, with firmware before 1708D. This vulnerability could potentially be exploited to execute arbitrary code. | ||
| CVE-2018-5924 | Cri | 0.65 | 9.8 | 0.12 | Aug 13, 2018 | A security vulnerability has been identified with certain HP Inkjet printers. A maliciously crafted file sent to an affected device can cause a stack buffer overflow, which could allow remote code execution. | ||
| CVE-2022-28722 | Cri | 0.64 | 9.8 | 0.01 | Sep 26, 2022 | Certain HP Print Products are potentially vulnerable to Buffer Overflow. | ||
| CVE-2022-28721 | Cri | 0.64 | 9.8 | 0.02 | Sep 26, 2022 | Certain HP Print Products are potentially vulnerable to Remote Code Execution. | ||
| CVE-2019-10627 | Cri | 0.64 | 9.8 | 0.01 | Nov 21, 2019 | Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and PDF printers that use IPS versions prior to 2019.2 in PostScript and PDF… | ||
| CVE-2018-5925 | Hig | 0.52 | 7.8 | 0.11 | Aug 13, 2018 | A security vulnerability has been identified with certain HP Inkjet printers. A maliciously crafted file sent to an affected device can cause a static buffer overflow, which could allow remote code execution. | ||
| CVE-2026-1997 | Med | 0.34 | 5.3 | 0.00 | Feb 10, 2026 | Certain HP OfficeJet Pro printers may expose information if Cross‑Origin Resource Sharing (CORS) is misconfigured, potentially allowing unauthorized web origins to access device resource. CORS is disabled by default on Pro‑class devices and can only be enabled by an… | ||
| CVE-2019-6337 | Med | 0.34 | 5.2 | 0.00 | Nov 7, 2019 | For the printers listed a maliciously crafted print file might cause certain HP Inkjet printers to assert. Under certain circumstances, the printer produces a core dump to a local device. |
- risk 0.73cvss 9.8epss 0.85
A potential security vulnerability has been identified with HP PageWide Printers, HP OfficeJet Pro Printers, with firmware before 1708D. This vulnerability could potentially be exploited to execute arbitrary code.
- risk 0.65cvss 9.8epss 0.12
A security vulnerability has been identified with certain HP Inkjet printers. A maliciously crafted file sent to an affected device can cause a stack buffer overflow, which could allow remote code execution.
- risk 0.64cvss 9.8epss 0.01
Certain HP Print Products are potentially vulnerable to Buffer Overflow.
- risk 0.64cvss 9.8epss 0.02
Certain HP Print Products are potentially vulnerable to Remote Code Execution.
- risk 0.64cvss 9.8epss 0.01
Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and PDF printers that use IPS versions prior to 2019.2 in PostScript and PDF…
- risk 0.52cvss 7.8epss 0.11
A security vulnerability has been identified with certain HP Inkjet printers. A maliciously crafted file sent to an affected device can cause a static buffer overflow, which could allow remote code execution.
- risk 0.34cvss 5.3epss 0.00
Certain HP OfficeJet Pro printers may expose information if Cross‑Origin Resource Sharing (CORS) is misconfigured, potentially allowing unauthorized web origins to access device resource. CORS is disabled by default on Pro‑class devices and can only be enabled by an…
- risk 0.34cvss 5.2epss 0.00
For the printers listed a maliciously crafted print file might cause certain HP Inkjet printers to assert. Under certain circumstances, the printer produces a core dump to a local device.