NONE · 0

CVE-2026-4682

Certain HP DeskJet All in One devices may be vulnerable to remote code execution caused by a buffer overflow when specially crafted Web Services for Devices (WSD) scan requests are improperly validate...

Vulnerability Description

Certain HP DeskJet All in One devices may be vulnerable to remote code execution caused by a buffer overflow when specially crafted Web Services for Devices (WSD) scan requests are improperly validated and handled by the MFP. WSD Scan is a Microsoft Windows–based network scanning protocol that allows a PC to discover scanners (and MFPs) on a network and send scan jobs to them without requiring vendor specific drivers or utilities.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-4682?

CVE-2026-4682 is a documented vulnerability. Certain HP DeskJet All in One devices may be vulnerable to remote code execution caused by a buffer overflow when specially crafted Web Services for Devices (WSD) scan requests are improperly validate...

How severe is CVE-2026-4682?

CVSS scoring is not yet available for CVE-2026-4682. Check NVD for updates.

Is there a patch for CVE-2026-4682?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.