CVE

CVE-2004-2439

Severity:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
11/07/2017

Description

The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote attackers to upgrade firmware.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:hp:color_laserjet:4650:*:*:*:*:*:*:*
cpe:2.3:h:hp:color_laserjet:5500:*:*:*:*:*:*:*
cpe:2.3:h:hp:color_laserjet:5550:*:*:*:*:*:*:*
cpe:2.3:h:hp:color_laserjet_4600:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_2500:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_3000:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_3700:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_4100_mfp:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_4200:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_4300:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9000:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9000_mfp:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9040_mpf:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9050:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_9050_mpf:*:*:*:*:*:*:*:*