The default configuration of the HP CM8060 Color MFP with Edgeline; Color LaserJet 3xxx, 4xxx, 5550, 9500, CMxxxx, CPxxxx, and Enterprise CPxxxx; Digital Sender 9200c and 9250c; LaserJet 4xxx, 5200, 90xx, Mxxxx, and Pxxxx; and LaserJet Enterprise 500 color M551, 600, M4555 MFP, and P3015 enables the Remote Firmware Update (RFU) setting, which allows remote attackers to execute arbitrary code by using a session on TCP port 9100 to upload a crafted firmware update.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Hp
Subscribe
|
Color Laserjet 3000
Subscribe
Color Laserjet 3800
Subscribe
Color Laserjet 4700
Subscribe
Color Laserjet 4730
Subscribe
Color Laserjet 4730 Mfp
Subscribe
Color Laserjet 5550
Subscribe
Color Laserjet 9500
Subscribe
Color Laserjet Cm3530
Subscribe
Color Laserjet Cm4540
Subscribe
Color Laserjet Cm4730
Subscribe
Color Laserjet Cm6030
Subscribe
Color Laserjet Cm6040
Subscribe
Color Laserjet Cp3505
Subscribe
Color Laserjet Cp3525
Subscribe
Color Laserjet Cp4005
Subscribe
Color Laserjet Cp5525
Subscribe
Color Laserjet Cp6015
Subscribe
Color Laserjet Enterprise Cp4520
Subscribe
Color Laserjet Enterprise Cp4525
Subscribe
Color Mfp Cm8060
Subscribe
Digital Sender 9200c
Subscribe
Digital Sender 9250c
Subscribe
Laserjet 4240
Subscribe
Laserjet 4250
Subscribe
Laserjet 4345 Mfp
Subscribe
Laserjet 4350
Subscribe
Laserjet 5200
Subscribe
Laserjet 9040
Subscribe
Laserjet 9050
Subscribe
Laserjet Enterprise 500 Color
Subscribe
Laserjet Enterprise 600
Subscribe
Laserjet Enterprise M4555
Subscribe
Laserjet Enterprise P3015
Subscribe
Laserjet M3035
Subscribe
Laserjet M5035
Subscribe
Laserjet M9040
Subscribe
Laserjet M9050
Subscribe
Laserjet P3005
Subscribe
Laserjet P4014
Subscribe
Laserjet P4015
Subscribe
Laserjet P4515
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2011-4104 | The default configuration of the HP CM8060 Color MFP with Edgeline; Color LaserJet 3xxx, 4xxx, 5550, 9500, CMxxxx, CPxxxx, and Enterprise CPxxxx; Digital Sender 9200c and 9250c; LaserJet 4xxx, 5200, 90xx, Mxxxx, and Pxxxx; and LaserJet Enterprise 500 color M551, 600, M4555 MFP, and P3015 enables the Remote Firmware Update (RFU) setting, which allows remote attackers to execute arbitrary code by using a session on TCP port 9100 to upload a crafted firmware update. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: hp
Published:
Updated: 2024-08-07T00:01:50.473Z
Reserved: 2011-10-21T00:00:00.000Z
Link: CVE-2011-4161
No data.
Status : Deferred
Published: 2011-12-01T21:55:00.707
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-4161
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD