« Volver al listado

CVE-2021-39238

Estado: ModificadaCrítica (9.8)—

Certain HP Enterprise LaserJet, HP LaserJet Managed, HP Enterprise PageWide, HP PageWide Managed products may be vulnerable to potential buffer overflow.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (3)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2021-39238",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 9.8,
          "attackVector": "NETWORK",
          "baseSeverity": "CRITICAL",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "hp-security-alert@hp.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "HP Enterprise LaserJet; HP LaserJet Managed; HP Enterprise PageWide; HP PageWide Managed printers",
          "versions": [
            {
              "status": "affected",
              "version": "FS3: before 3.9.8"
            },
            {
              "status": "affected",
              "version": "FS4: before 4.11.2.1"
            },
            {
              "status": "affected",
              "version": "FS: before 5.3"
            },
            {
              "status": "affected",
              "version": "FS5: before 5.3"
            }
          ]
        }
      ]
    }
  ],
  "published": "2021-11-03T01:15:07.743",
  "references": [
    {
      "url": "https://support.hp.com/us-en/document/ish_5000383-5000409-16",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "hp-security-alert@hp.com"
    },
    {
      "url": "https://support.hp.com/us-en/document/ish_5000383-5000409-16",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-120"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Certain HP Enterprise LaserJet, HP LaserJet Managed, HP Enterprise PageWide, HP PageWide Managed products may be vulnerable to potential buffer overflow."
    },
    {
      "lang": "es",
      "value": "Determinados productos HP Enterprise LaserJet, HP LaserJet Managed, HP Enterprise PageWide y HP PageWide Managed pueden ser vulnerables a un posible desbordamiento del búfer"
    }
  ],
  "lastModified": "2026-06-17T04:03:22.653",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:hp:futuresmart_3:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1C5EB02E-B15A-484B-BF80-E60D6EDBE172",
              "versionEndExcluding": "3.9.8"
            },
            {
              "criteria": "cpe:2.3:o:hp:futuresmart_4:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A5B29112-4F11-4D38-B635-3CAF021AD3C5",
              "versionEndExcluding": "4.11.2.1"
            },
            {
              "criteria": "cpe:2.3:o:hp:futuresmart_5:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9D57D4FE-A12E-42B6-8E10-D7B5E60675DF",
              "versionEndExcluding": "5.3"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "hp-security-alert@hp.com"
}