J3p65a Firmware
by Microfocus
CVEs (5)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-28722 | Cri | 0.64 | 9.8 | 0.01 | Sep 26, 2022 | Certain HP Print Products are potentially vulnerable to Buffer Overflow. | ||
| CVE-2022-28721 | Cri | 0.64 | 9.8 | 0.02 | Sep 26, 2022 | Certain HP Print Products are potentially vulnerable to Remote Code Execution. | ||
| CVE-2019-10627 | Cri | 0.64 | 9.8 | 0.01 | Nov 21, 2019 | Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and PDF printers that use IPS versions prior to 2019.2 in PostScript and PDF… | ||
| CVE-2026-1997 | Med | 0.34 | 5.3 | 0.00 | Feb 10, 2026 | Certain HP OfficeJet Pro printers may expose information if Cross‑Origin Resource Sharing (CORS) is misconfigured, potentially allowing unauthorized web origins to access device resource. CORS is disabled by default on Pro‑class devices and can only be enabled by an… | ||
| CVE-2019-6337 | Med | 0.34 | 5.2 | 0.00 | Nov 7, 2019 | For the printers listed a maliciously crafted print file might cause certain HP Inkjet printers to assert. Under certain circumstances, the printer produces a core dump to a local device. |
- risk 0.64cvss 9.8epss 0.01
Certain HP Print Products are potentially vulnerable to Buffer Overflow.
- risk 0.64cvss 9.8epss 0.02
Certain HP Print Products are potentially vulnerable to Remote Code Execution.
- risk 0.64cvss 9.8epss 0.01
Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and PDF printers that use IPS versions prior to 2019.2 in PostScript and PDF…
- risk 0.34cvss 5.3epss 0.00
Certain HP OfficeJet Pro printers may expose information if Cross‑Origin Resource Sharing (CORS) is misconfigured, potentially allowing unauthorized web origins to access device resource. CORS is disabled by default on Pro‑class devices and can only be enabled by an…
- risk 0.34cvss 5.2epss 0.00
For the printers listed a maliciously crafted print file might cause certain HP Inkjet printers to assert. Under certain circumstances, the printer produces a core dump to a local device.