Vulnerabilities > CVE-2002-1048 - Unspecified vulnerability in HP Jetdirect
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
HP JetDirect printers allow remote attackers to obtain the administrative password for the (1) web and (2) telnet services via an SNMP request to the variable (.iso.3.6.1.4.1.11.2.3.9.4.2.1.3.9.1.1.0.
Vulnerable Configurations
Exploit-Db
description | HP JetDirect Printer SNMP JetAdmin Device Password Disclosure Vulnerability. CVE-2002-1048. Remote exploit for hardware platform |
id | EDB-ID:22319 |
last seen | 2016-02-02 |
modified | 2003-03-03 |
published | 2003-03-03 |
reporter | Sven Pechler |
source | https://www.exploit-db.com/download/22319/ |
title | HP JetDirect Printer SNMP JetAdmin Device Password Disclosure Vulnerability |
Nessus
NASL family | SNMP |
NASL id | SNMP_HPJETDIRECTEWS.NASL |
description | It is possible to obtain the password of the remote HP JetDirect web server by sending SNMP requests. An attacker may use this information to gain administrative access to the remote printer. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11317 |
published | 2003-03-04 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11317 |
title | HP JetDirect Device SNMP Request Cleartext Admin Credential Disclosure |
code |
|
References
- http://archives.neohapsis.com/archives/bugtraq/2002-07/0345.html
- http://archives.neohapsis.com/archives/bugtraq/2002-07/0345.html
- http://www.iss.net/security_center/static/9693.php
- http://www.iss.net/security_center/static/9693.php
- http://www.kb.cert.org/vuls/id/377003
- http://www.kb.cert.org/vuls/id/377003
- http://www.securityfocus.com/bid/5331
- http://www.securityfocus.com/bid/5331