Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

HP JetDirect Printers SNMP Get Administrative Password Retrieval Vulnerability

JetDirect printers are network-enabled printers distributed by Hewlett-Packard.

It has been reported that HP JetDirect printers leak the telnet and HTTP administrative password under some circumstances. By sending an SNMP READ request to a vulnerable printer, the printer will return the hex-encoded password to the requester. This could allow a remote user to access and change configuration of the printer.







 

Privacy Statement
Copyright 2008, SecurityFocus