CVE-2023-5113

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 4, 2023
Updated: Oct 11, 2023
CWE ID 787

Summary

CVE-2023-5113 is a newly disclosed vulnerability affecting select HP Enterprise LaserJet and HP LaserJet Managed Printers. The issue allows an attacker to execute denial of service attacks through malicious WS-Print requests. Additionally, the vulnerability exposes a risk of Cross Site Scripting (XSS) attacks via jQuery-UI, potentially enabling code injection if a user visits a specially crafted printer web interface. These printers must be updated promptly to mitigate both the denial of service and XSS threats.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share