CVE-2017-2750 is a critical vulnerability affecting various HP LaserJet, PageWide, and OfficeJet Enterprise printers due to insufficient DLL signature validation. This flaw allows for the potential execution of arbitrary code on vulnerable devices. With a CVSS score of 9.8 (CRITICAL), it presents a severe risk as it can be exploited remotely without user interaction, leading to complete compromise of confidentiality, integrity, and availability. While there is no known public exploit code or active exploitation, the vulnerability has garnered significant community attention and media coverage, indicating its perceived importance.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2405087_018552CPE matchmatch criteria | cpe:2.3:o:hp:l2683a_firmware:*:*:*:*:*:*:*:* | ||
< 2308937_578486CPE matchmatch criteria | cpe:2.3:o:hp:l2717a_firmware:*:*:*:*:*:*:*:* | ||
< 2308937_578483CPE matchmatch criteria | cpe:2.3:o:hp:l2762a_firmware:*:*:*:*:*:*:*:* | ||
< 2405087_018553CPE matchmatch criteria | cpe:2.3:o:hp:l2762a_firmware:*:*:*:*:*:*:*:* | ||
< 2405087_018548CPE matchmatch criteria | cpe:2.3:o:hp:j7z13a_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.