Vulnerabilities > CVE-2004-1856 - Unspecified vulnerability in HP web Jetadmin 7.5.2546

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
hp
exploit available

Summary

devices_update_printer_fw_upload.hts in HP Web JetAdmin 7.5.2546, when no password is set, allows remote attackers to upload arbitrary files to the printer directory.

Vulnerable Configurations

Part Description Count
Application
Hp
1

Exploit-Db

descriptionHP Web Jetadmin 7.5.2456 Printer Firmware Update Script Arbitrary File Upload Weakness. CVE-2004-1856. Remote exploit for windows platform
idEDB-ID:23878
last seen2016-02-02
modified2004-03-24
published2004-03-24
reporterwirepair
sourcehttps://www.exploit-db.com/download/23878/
titleHP Web Jetadmin 7.5.2456 Printer Firmware Update Script Arbitrary File Upload Weakness