HIGH · 7.5

CVE-2021-3965

Certain HP DesignJet products may be vulnerable to unauthenticated HTTP requests which allow viewing and downloading of print job previews.

Vulnerability Description

Certain HP DesignJet products may be vulnerable to unauthenticated HTTP requests which allow viewing and downloading of print job previews.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
HpDesignjet T920 Cr355A Firmwaremry_07_07_04.1
HpDesignjet T920 Cr355A-
HpDesignjet T920 Cr355B Firmwaremry_07_07_04.1
HpDesignjet T920 Cr355B-
HpDesignjet T920 Cr354A Firmwaremry_07_07_04.1
HpDesignjet T920 Cr354A-
HpDesignjet T930 L2Y22A Firmwaremry_07_07_04.1
HpDesignjet T930 L2Y22A-
HpDesignjet T930 L2Y22B Firmwaremry_07_07_04.1
HpDesignjet T930 L2Y22B-
HpDesignjet T930 L2Y21A Firmwaremry_07_07_04.1
HpDesignjet T930 L2Y21A-
HpDesignjet T930 L2Y21B Firmwaremry_07_07_04.1
HpDesignjet T930 L2Y21B-
HpDesignjet T1530 L2Y24A Firmwaremry_07_07_04.1
HpDesignjet T1530 L2Y24A-
HpDesignjet T1530 L2Y24B Firmwaremry_07_07_04.1
HpDesignjet T1530 L2Y24B-
HpDesignjet T1530 L2Y23A Firmwaremry_07_07_04.1
HpDesignjet T1530 L2Y23A-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-3965?

CVE-2021-3965 is a vulnerability with a CVSS score of 7.5 (HIGH). Certain HP DesignJet products may be vulnerable to unauthenticated HTTP requests which allow viewing and downloading of print job previews.

How severe is CVE-2021-3965?

CVE-2021-3965 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-3965?

Check the references section above for vendor advisories and patch information. Affected products include: Hp Designjet T920 Cr355A Firmware, Hp Designjet T920 Cr355A, Hp Designjet T920 Cr355B Firmware, Hp Designjet T920 Cr355B, Hp Designjet T920 Cr354A Firmware.