CVE detail
CVE-2022-24292
Certain HP Print devices may be vulnerable to potential information disclosure, denial of service, or remote code execution.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 16.1 · diversity 9.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
4 source links · newest first
HP this week announced that more than 200 printer models are impacted by a severe remote code execution vulnerability that was exploited by researchers at the Pwn2Own hacking contest last year, where participants earned a total of more than $1 million.
newswww.securityweek.comMar 24, 2022, 9:37 AMIn two security advisories, HP has alerted users to the existence of security vulnerabilities in several of its printer models. In…
newswww.malwarebytes.comMar 23, 2022, 5:00 PMHP has published various security alerts for more than 250 of its printer models. Hackers should be able to inject malicious code, denial-of-service (DoS) attacks to start and access data. As a countermeasure, the manufacturer recommends firmware updates and configuration changes. Gateway LLMNR protocol The first vulnerability, CVE-2022-3942, is classified as critical with a value of 8.4. According to Heise, attackers can […]
newswww.csoonline.comMar 23, 2022, 3:56 PM- Three critical RCE flaws affect hundreds of HP printer modelsSecurity Affairs
Three critical RCE flaws affect hundreds of HP LaserJet Pro, Pagewide Pro, OfficeJet, Enterprise, Large Format, and DeskJet printer models. HP issued a security bulletin warning of a buffer overflow vulnerability, tracked as CVE-2022-3942 (CVSS score 8.4), that could lead to remote code execution on vulnerable devices. “Certain HP Print products and Digital Sending products may […]
newssecurityaffairs.comMar 22, 2022, 4:04 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2022-24293CVSS 9.8 · Critical
Certain HP Print devices may be vulnerable to potential information disclosure, denial of service, or remote code execution.
4 mentions - CVE-2022-24291CVSS 7.5 · High
Certain HP Print devices may be vulnerable to potential information disclosure, denial of service, or remote code execution.
4 mentions - CVE-2023-35178CVSS 8.8 · High
Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow when performing a GET request to scan jobs.
- CVE-2023-35177CVSS 8.8 · High
Certain HP LaserJet Pro print products are potentially vulnerable to a stack-based buffer overflow related to the compact font format parser.
- CVE-2023-35176CVSS 8.8 · High
Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Denial of Service when using the backup & restore feature through the embedded web serv…
- CVE-2023-35175CVSS 9.8 · Critical
Certain HP LaserJet Pro print products are potentially vulnerable to Potential Remote Code Execution and/or Elevation of Privilege via Server-Side Request Forgery (SSRF) using the…