The default configuration of the HP CM8060 Color MFP with Edgeline; Color LaserJet 3xxx, 4xxx, 5550, 9500, CMxxxx, CPxxxx, and Enterprise CPxxxx; Digital Sender 9200c and 9250c; LaserJet 4xxx, 5200, 90xx, Mxxxx, and Pxxxx; and LaserJet Enterprise 500 color M551, 600, M4555 MFP, and P3015 enables the Remote Firmware Update (RFU) setting, which allows remote attackers to execute arbitrary code by using a session on TCP port 9100 to upload a crafted firmware update.

Project Subscriptions

Vendors Products
Color Laserjet 3000 Subscribe
Color Laserjet 3800 Subscribe
Color Laserjet 4700 Subscribe
Color Laserjet 4730 Subscribe
Color Laserjet 4730 Mfp Subscribe
Color Laserjet 5550 Subscribe
Color Laserjet 9500 Subscribe
Color Laserjet Cm3530 Subscribe
Color Laserjet Cm4540 Subscribe
Color Laserjet Cm4730 Subscribe
Color Laserjet Cm6030 Subscribe
Color Laserjet Cm6040 Subscribe
Color Laserjet Cp3505 Subscribe
Color Laserjet Cp3525 Subscribe
Color Laserjet Cp4005 Subscribe
Color Laserjet Cp5525 Subscribe
Color Laserjet Cp6015 Subscribe
Color Laserjet Enterprise Cp4520 Subscribe
Color Laserjet Enterprise Cp4525 Subscribe
Color Mfp Cm8060 Subscribe
Digital Sender 9200c Subscribe
Digital Sender 9250c Subscribe
Laserjet 4240 Subscribe
Laserjet 4250 Subscribe
Laserjet 4345 Mfp Subscribe
Laserjet 4350 Subscribe
Laserjet 5200 Subscribe
Laserjet 9040 Subscribe
Laserjet 9050 Subscribe
Laserjet Enterprise 500 Color Subscribe
Laserjet Enterprise 600 Subscribe
Laserjet Enterprise M4555 Subscribe
Laserjet Enterprise P3015 Subscribe
Laserjet M3035 Subscribe
Laserjet M5035 Subscribe
Laserjet M9040 Subscribe
Laserjet M9050 Subscribe
Laserjet P3005 Subscribe
Laserjet P4014 Subscribe
Laserjet P4015 Subscribe
Laserjet P4515 Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2011-4104 The default configuration of the HP CM8060 Color MFP with Edgeline; Color LaserJet 3xxx, 4xxx, 5550, 9500, CMxxxx, CPxxxx, and Enterprise CPxxxx; Digital Sender 9200c and 9250c; LaserJet 4xxx, 5200, 90xx, Mxxxx, and Pxxxx; and LaserJet Enterprise 500 color M551, 600, M4555 MFP, and P3015 enables the Remote Firmware Update (RFU) setting, which allows remote attackers to execute arbitrary code by using a session on TCP port 9100 to upload a crafted firmware update.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: hp

Published:

Updated: 2024-08-07T00:01:50.473Z

Reserved: 2011-10-21T00:00:00.000Z

Link: CVE-2011-4161

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2011-12-01T21:55:00.707

Modified: 2025-04-11T00:51:21.963

Link: CVE-2011-4161

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses