Attacker Value
Unknown
0
CVE-2020-28416
0
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2020-28416
(Last updated October 07, 2023) ▾
MITRE ATT&CK
Log in to add MITRE ATT&CK tag
Add MITRE ATT&CK tactics and techniques that apply to this CVE.
MITRE ATT&CK
Select the MITRE ATT&CK Tactics that apply to this CVE
Collection
Select any Techniques used:
Command and Control
Select any Techniques used:
Credential Access
Select any Techniques used:
Defense Evasion
Select any Techniques used:
Discovery
Select any Techniques used:
Execution
Select any Techniques used:
Exfiltration
Select any Techniques used:
Impact
Select any Techniques used:
Initial Access
Select any Techniques used:
Lateral Movement
Select any Techniques used:
Persistence
Select any Techniques used:
Privilege Escalation
Select any Techniques used:
Topic Tags
Select the tags that apply to this CVE (Assessment added tags are disabled and cannot be removed)
What makes this of high-value to an attacker?
What makes this of low-value to an attacker?
Description
HP has identified a security vulnerability with the I.R.I.S. OCR (Optical Character Recognition) software available with HP PageWide and OfficeJet printer software installations that could potentially allow unauthorized local code execution.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
Data provided by the National Vulnerability Database (NVD)
Base Score:
7.8 High
Impact Score:
5.9
Exploitability Score:
1.8
Attack Vector (AV):
Local
Attack Complexity (AC):
Low
Privileges Required (PR):
Low
User Interaction (UI):
None
Scope (S):
Unchanged
Confidentiality (C):
High
Integrity (I):
High
Availability (A):
High
General Information
Offensive Application
Unknown
Utility Class
Unknown
Ports
Unknown
OS
Unknown
Vulnerable Versions
HP OfficeJet Printer; HP PageWide Printer before 33.1.74
HP OfficeJet Printer; HP PageWide Printer before 35.0.72
HP OfficeJet Printer; HP PageWide Printer before 38.8.1942
HP OfficeJet Printer; HP PageWide Printer before 38.9.1948
HP OfficeJet Printer; HP PageWide Printer before 39.6.1999
HP OfficeJet Printer; HP PageWide Printer before 39.6.2002
HP OfficeJet Printer; HP PageWide Printer before 40.11.1122
HP OfficeJet Printer; HP PageWide Printer before 40.11.1148
HP OfficeJet Printer; HP PageWide Printer before 40.11.1150
HP OfficeJet Printer; HP PageWide Printer before 40.12.1161
HP OfficeJet Printer; HP PageWide Printer before 40.13.1176
HP OfficeJet Printer; HP PageWide Printer before 40.7.1094
Prerequisites
Unknown
Discovered By
Unknown
PoC Author
Unknown
Metasploit Module
Unknown
Reporter
Unknown
Vendors
Products
- officejet 250 cz992a firmware,
- officejet 250c l9d57a firmware,
- officejet 252 n4l16c firmware,
- officejet 252c n4l18c firmware,
- officejet 258 n4l17a firmware,
- officejet 4650 e6g87a firmware,
- officejet 4650 f1h96a firmware,
- officejet 4650 f1h96b firmware,
- officejet 4650 f1j03a firmware,
- officejet 4650 f1j04a firmware,
- officejet 4650 f9d37a firmware,
- officejet 4650 k9v77a firmware,
- officejet 4650 k9v85b firmware,
- officejet 4651 k9v83b firmware,
- officejet 4652 f1j02a firmware,
- officejet 4652 f1j05b firmware,
- officejet 4652 k9v84b firmware,
- officejet 4654 f1j06b firmware,
- officejet 4654 f1j07b firmware,
- officejet 4654 k9v76a firmware,
- officejet 4655 f1j00a firmware,
- officejet 4655 k9v82b firmware,
- officejet 4656 k9v81b firmware,
- officejet 4657 v6d27b firmware,
- officejet 4657 v6d29b firmware,
- officejet 4658 v6d28b firmware,
- officejet 4658 v6d30b firmware,
- officejet 5740 b9s76a firmware,
- officejet 5740 b9s78a firmware,
- officejet 5740 b9s79a firmware,
- officejet 5741 b9s83a firmware,
- officejet 5742 b9s81a firmware,
- officejet 5742 b9s84a firmware,
- officejet 5742 f8b11a firmware,
- officejet 5743 f8b10a firmware,
- officejet 5744 b9s82a firmware,
- officejet 5744 b9s85a firmware,
- officejet 5745 b9s80a firmware,
- officejet 5746 f8b09a firmware,
- officejet 5746 t1p36a firmware,
- officejet 6835 t6t84a firmware,
- officejet 6950 p4c78a firmware,
- officejet 6950 p4c81a firmware,
- officejet 6950 p4c82a firmware,
- officejet 6950 p4c84a firmware,
- officejet 6950 p4c85a firmware,
- officejet 6950 p4c86a firmware,
- officejet 6950 t3p03a firmware,
- officejet 6960 j7k33a firmware,
- officejet 6960 j7k35a firmware,
- officejet 6960 j7k37a firmware,
- officejet 6960 j7k38a firmware,
- officejet 6960 j7k39a firmware,
- officejet 6960 t0f28a firmware,
- officejet 6960 t0f30a firmware,
- officejet 6960 t0f31a firmware,
- officejet 6960 t0f32a firmware,
- officejet 6960 t0f36a firmware,
- officejet 6960 t0f38a firmware,
- officejet 6960 t0g25a firmware,
- officejet 6960 t0g26a firmware,
- officejet 7510 g3j47a firmware,
- officejet 7512 k1z44a firmware,
- officejet pro 6830 e3e02a firmware,
- officejet pro 6830 m0f56a firmware,
- officejet pro 6830c l3l04a firmware,
- officejet pro 6835 j2d37a firmware,
- officejet pro 6960 j7k33a firmware,
- officejet pro 6960 j7k35a firmware,
- officejet pro 6960 j7k37a firmware,
- officejet pro 6960 j7k38a firmware,
- officejet pro 6960 j7k39a firmware,
- officejet pro 6960 t0f28a firmware,
- officejet pro 6960 t0f30a firmware,
- officejet pro 6960 t0f31a firmware,
- officejet pro 6960 t0f32a firmware,
- officejet pro 6960 t0f36a firmware,
- officejet pro 6960 t0f38a firmware,
- officejet pro 6960 t0g25a firmware,
- officejet pro 6960 t0g26a firmware,
- officejet pro 6970 j7k34a firmware,
- officejet pro 6970 j7k36a firmware,
- officejet pro 6970 j7k40a firmware,
- officejet pro 6970 j7k41a firmware,
- officejet pro 6970 j7k42a firmware,
- officejet pro 6970 t0f29a firmware,
- officejet pro 6970 t0f33a firmware,
- officejet pro 6970 t0f34a firmware,
- officejet pro 6970 t0f35a firmware,
- officejet pro 6970 t0f37a firmware,
- officejet pro 6970 t0f39a firmware,
- officejet pro 6970 t0f40a firmware,
- officejet pro 7740 g5j38a firmware,
- officejet pro 7745 t1p99a firmware,
- officejet pro 8710 d9l18a firmware,
- officejet pro 8710 j6x79a firmware,
- officejet pro 8710 m9l66a firmware,
- officejet pro 8710 m9l67a firmware,
- officejet pro 8712 t0g46a firmware,
- officejet pro 8715 j6x76a firmware,
- officejet pro 8715 j6x78a firmware,
- officejet pro 8715 j6x80a firmware,
- officejet pro 8715 k7s37a firmware,
- officejet pro 8715 m9l70a firmware,
- officejet pro 8716 j6x77a firmware,
- officejet pro 8716 j6x81a firmware,
- officejet pro 8717 k7s38a firmware,
- officejet pro 8717 m9l65a firmware,
- officejet pro 8718 t0g47a firmware,
- officejet pro 8718 t0g48a firmware,
- officejet pro 8719 t0g49a firmware,
- officejet pro 8720 d9l19a firmware,
- officejet pro 8720 k7s35a firmware,
- officejet pro 8720 k7s36a firmware,
- officejet pro 8720 m9l74a firmware,
- officejet pro 8720 m9l75a firmware,
- officejet pro 8720 m9l76a firmware,
- officejet pro 8725 j7a28a firmware,
- officejet pro 8725 j7a31a firmware,
- officejet pro 8725 k7s34a firmware,
- officejet pro 8725 m9l80a firmware,
- officejet pro 8727 j7a29a firmware,
- officejet pro 8728 t0g54a firmware,
- officejet pro 873 d9l20a firmware,
- officejet pro 8732m t0g56a firmware,
- officejet pro 8732m t0g57a firmware,
- officejet pro 8732m t0g58a firmware,
- officejet pro 8732m t0g59a firmware,
- officejet pro 8740 d9l21a firmware,
- officejet pro 8740 k7s42a firmware,
- officejet pro 8743 t0g65a firmware,
- officejet pro 8744 k7s39a firmware,
- officejet pro 8745 j6x83a firmware,
- officejet pro 8745 k7s43a firmware,
- officejet pro 8746 k7s40a firmware,
- officejet pro 8747 k7s41a firmware,
- pagewide 377dw j9v80a firmware,
- pagewide 377dw j9v80b firmware,
- pagewide managed p52750dw j9v78b firmware,
- pagewide managed p57750dw 9v82a firmware,
- pagewide managed p57750dw j9v82b firmware,
- pagewide managed p57750dw j9v82c firmware,
- pagewide managed p57750dw j9v82d firmware,
- pagewide pro 477dn d3q19a firmware,
- pagewide pro 477dn d3q19b firmware,
- pagewide pro 477dn d3q19d firmware,
- pagewide pro 477dw d3q20a firmware,
- pagewide pro 477dw d3q20b firmware,
- pagewide pro 477dw d3q20c firmware,
- pagewide pro 477dw d3q20d firmware,
- pagewide pro 477dw w2z53b firmware,
- pagewide pro 577dw d3q21a firmware,
- pagewide pro 577dw d3q21b firmware,
- pagewide pro 577dw d3q21c firmware,
- pagewide pro 577dw d3q21d firmware
References
Miscellaneous
Additional Info
Authenticated
Unknown
Exploitable
Unknown
Reliability
Unknown
Stability
Unknown
Available Mitigations
Unknown
Shelf Life
Unknown
Userbase/Installbase
Unknown
Patch Effectiveness
Unknown
Rapid7
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: