CVE-2024-2209

EUVD-2024-27168
A user with administrative privileges can create a compromised dll file of the same name as the original dll within the HP printer’s Firmware Update Utility (FUU) bundle and place it in the Microsoft Windows default downloads directory which can lead to potential arbitrary code execution.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.3 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L
CISA-ADPADP
6.3 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 19%
Affected Products (NVD)
VendorProductVersion
hp26k70b_firmware
𝑥
< 2349b
hp297x1a_firmware
𝑥
< 2349b
hp2a9q5a_firmware
𝑥
< 2349b
hp26k72a_firmware
𝑥
< 2349b
hp26k69a_firmware
𝑥
< 2349b
hp26k70a_firmware
𝑥
< 2349b
hp26k71a_firmware
𝑥
< 2349b
hp26k68a_firmware
𝑥
< 2349b
hp26k67a_firmware
𝑥
< 2349b
hp3xv19a_firmware
𝑥
< 2349b
hp7fr52a_firmware
𝑥
< 2349b
hp7fr57a_firmware
𝑥
< 2349b
hp7fr53a_firmware
𝑥
< 2349b
hp7fr58a_firmware
𝑥
< 2349b
hp7fr61a_firmware
𝑥
< 2349b
hp5ar83a_firmware
𝑥
< 2349b
hp5ar84a_firmware
𝑥
< 2349b
hp5ar85a_firmware
𝑥
< 2349b
hp8rk11a_firmware
𝑥
< 2349b
hp3xv17a_firmware
𝑥
< 2349b
hp4ws04a_firmware
𝑥
< 2349b
hp7fr21a_firmware
𝑥
< 2349b
hp7fr20a_firmware
𝑥
< 2349b
hp26k72b_firmware
𝑥
< 2349c
hp26k67b_firmware
𝑥
< 2349c
hp297w8a_firmware
𝑥
< 2349c
hp26k68b_firmware
𝑥
< 2349c
hp297x0a_firmware
𝑥
< 2349c
hp26k70b_firmware
𝑥
< 2349c
hp297x1a_firmware
𝑥
< 2349c
hp2a9q5a_firmware
𝑥
< 2349c
hp26k72a_firmware
𝑥
< 2349c
hp26k69a_firmware
𝑥
< 2349c
hp26k70a_firmware
𝑥
< 2349c
hp26k71a_firmware
𝑥
< 2349c
hp26k68a_firmware
𝑥
< 2349c
hp26k67a_firmware
𝑥
< 2349c
hp3xv19a_firmware
𝑥
< 2349c
hp7fr52a_firmware
𝑥
< 2349c
hp7fr57a_firmware
𝑥
< 2349c
hp26k72b_firmware
𝑥
< 2349b
hp26k67b_firmware
𝑥
< 2349b
hp297w8a_firmware
𝑥
< 2349b
hp26k68b_firmware
𝑥
< 2349b
hp297x0a_firmware
𝑥
< 2349b
hp7fr53a_firmware
𝑥
< 2349c
hp7fr58a_firmware
𝑥
< 2349c
hp7fr61a_firmware
𝑥
< 2349c
hp5ar83a_firmware
𝑥
< 2349c
hp5ar84a_firmware
𝑥
< 2349c
hp5ar85a_firmware
𝑥
< 2349c
hp8rk11a_firmware
𝑥
< 2349c
hp3xv17a_firmware
𝑥
< 2349c
hp4ws04a_firmware
𝑥
< 2349c
hp7fr21a_firmware
𝑥
< 2349c
hp7fr20a_firmware
𝑥
< 2349c
hp7fr21a_firmware
𝑥
< 2349d
hp26k72b_firmware
𝑥
< 2349d
hp26k67b_firmware
𝑥
< 2349d
hp297w8a_firmware
𝑥
< 2349d
hp26k68b_firmware
𝑥
< 2349d
hp297x0a_firmware
𝑥
< 2349d
hp26k70b_firmware
𝑥
< 2349d
hp297x1a_firmware
𝑥
< 2349d
hp2a9q5a_firmware
𝑥
< 2349d
hp26k72a_firmware
𝑥
< 2349d
hp26k69a_firmware
𝑥
< 2349d
hp26k70a_firmware
𝑥
< 2349d
hp26k71a_firmware
𝑥
< 2349d
hp26k68a_firmware
𝑥
< 2349d
hp26k67a_firmware
𝑥
< 2349d
hp3xv19a_firmware
𝑥
< 2349d
hp7fr52a_firmware
𝑥
< 2349d
hp7fr57a_firmware
𝑥
< 2349d
hp7fr53a_firmware
𝑥
< 2349d
hp7fr58a_firmware
𝑥
< 2349d
hp7fr61a_firmware
𝑥
< 2349d
hp5ar83a_firmware
𝑥
< 2349d
hp5ar84a_firmware
𝑥
< 2349d
hp5ar85a_firmware
𝑥
< 2349d
hp8rk11a_firmware
𝑥
< 2349d
hp3xv17a_firmware
𝑥
< 2349d
hp4ws04a_firmware
𝑥
< 2349d
𝑥
= Vulnerable software versions