peter bassill · operator
$ cve CVE-2018-5924 JSON

CVE-2018-5924

9.8
CRITICAL · CVSS 3.0 · EPSS 12.2% (pctl 96)

Patch early

EPSS 12.2% — above the 10% action threshold.

Description

A security vulnerability has been identified with certain HP Inkjet printers. A maliciously crafted file sent to an affected device can cause a stack buffer overflow, which could allow remote code execution.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS12.23% — more likely to be exploited than 96% of all CVEs
WeaknessCWE-787
On CISA KEVno
Public exploitnone known
Published2018-08-13
Last modified2026-06-17

Affected (40)

VendorProduct
hp1sh08
hp1sh08 firmware
hp3aw44a
hp3aw44a firmware
hp3aw51a
hp3aw51a firmware
hp4uj28b
hp4uj28b firmware
hpa9u19a
hpa9u19a firmware
hpa9u28b
hpa9u28b firmware
hpd3a78b
hpd3a78b firmware
hpd3a82a
hpd3a82a firmware
hpd4h22a
hpd4h22a firmware
hpd4h24b
hpd4h24b firmware
hpf5s57a
hpf5s57a firmware
hpj6u57b
hpj6u57b firmware
hpk4t99b
hpk4t99b firmware
hpk4u04b
hpk4u04b firmware
hpt8x39
hpt8x39 firmware
hpt8x44
hpt8x44 firmware
hpv1n01a
hpv1n01a firmware
hpv1n08a
hpv1n08a firmware
hpy5h60a
hpy5h60a firmware
hpy5h80a
hpy5h80a firmware

References

→ the Explorer  ·  watch your stack  ·  NVD