// For flags

CVE-2012-3272

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Cross-site scripting (XSS) vulnerability on the HP Color LaserJet CM3530 with firmware before 53.190.9, Color LaserJet CM60xx with firmware before 52.210.9, Color LaserJet CP3525 with firmware before 06.140.3 18, Color LaserJet CP4xxx with firmware before 07.120.6, Color LaserJet CP6015 with firmware before 04.160.3, LaserJet P3015 with firmware before 07.140.3, and LaserJet P4xxx with firmware before 04.170.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Vulnerabilidad de ejecución de secuencias de comandos en sitios cruzados (XSS) en HP Color LaserJet CM3530 con firmware anterior a v53.190.9, Color LaserJet CM60xx con firmware anterior a v52.210.9, Color LaserJet CP3525 con firmware anterior a v06.140.3 18, Color LaserJet CP4xxx con firmware anterior a v07.120.6, Color LaserJet CP6015 con firmware anterior a v04.160.3, LaserJet P3015 con firmware anterior a v07.140.3, y LaserJet P4xxx con firmware anterior a v04.170.3 permite a atacantes remotos ejecutar secuencias de comandos o HTML a través de vectores no especificados.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2012-06-06 CVE Reserved
  • 2012-12-06 CVE Published
  • 2024-03-01 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Hp
Search vendor "Hp"
Color Laserjet Cm3530
Search vendor "Hp" for product "Color Laserjet Cm3530"
<= 53.190.8
Search vendor "Hp" for product "Color Laserjet Cm3530" and version " <= 53.190.8"
-
Affected
Hp
Search vendor "Hp"
Color Laserjet Cm60xx
Search vendor "Hp" for product "Color Laserjet Cm60xx"
<= 53.190.8
Search vendor "Hp" for product "Color Laserjet Cm60xx" and version " <= 53.190.8"
-
Affected
Hp
Search vendor "Hp"
Color Laserjet Cp3525
Search vendor "Hp" for product "Color Laserjet Cp3525"
<= 06.140.3.17
Search vendor "Hp" for product "Color Laserjet Cp3525" and version " <= 06.140.3.17"
-
Affected
Hp
Search vendor "Hp"
Color Laserjet Cp4xxx
Search vendor "Hp" for product "Color Laserjet Cp4xxx"
<= 07.120.5
Search vendor "Hp" for product "Color Laserjet Cp4xxx" and version " <= 07.120.5"
-
Affected
Hp
Search vendor "Hp"
Color Laserjet Cp6015
Search vendor "Hp" for product "Color Laserjet Cp6015"
<= 04.160.2
Search vendor "Hp" for product "Color Laserjet Cp6015" and version " <= 04.160.2"
-
Affected
Hp
Search vendor "Hp"
Laserjet P3015
Search vendor "Hp" for product "Laserjet P3015"
<= 07.140.2
Search vendor "Hp" for product "Laserjet P3015" and version " <= 07.140.2"
-
Affected
Hp
Search vendor "Hp"
Laserjet P4xxx
Search vendor "Hp" for product "Laserjet P4xxx"
<= 04.170.2
Search vendor "Hp" for product "Laserjet P4xxx" and version " <= 04.170.2"
-
Affected