CVE-2024-5143
EUVD-2024-4639723.05.2024, 17:15
A user with device administrative privileges can change existing SMTP server settings on the device, without having to re-enter SMTP server credentials. By redirecting send-to-email traffic to the new server, the original SMTP server credentials may potentially be exposed.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hp | w1a75a_firmware | 𝑥 < 002_2413A |
| hp | w1a76a_firmware | 𝑥 < 002_2413A |
| hp | w1a77a_firmware | 𝑥 < 002_2413A |
| hp | w1a81a_firmware | 𝑥 < 002_2413A |
| hp | w1a82a_firmware | 𝑥 < 002_2413A |
| hp | w1a79a_firmware | 𝑥 < 002_2413A |
| hp | w1a80a_firmware | 𝑥 < 002_2413A |
| hp | w1a78a_firmware | 𝑥 < 002_2413A |
𝑥
= Vulnerable software versions
Common Weakness Enumeration