CVE-2011-0279

HP Multifunction Peripheral Digital Sending Software 4.91.00 - Improper Authentication

Title source: llm
STIX 2.1

Description

HP Multifunction Peripheral (MFP) Digital Sending Software (DSS) 4.91.00 does not properly configure authentication settings of managed devices within device templates, which allows attackers to access these devices via actions that were intended to require authentication.

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/65866
Various Sources vendor-advisory x_refsource_hp
http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02738104
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2011/0561
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1025155
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/43618
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/46679

Scores

EPSS 0.0008
EPSS Percentile 23.8%

Details

CWE
CWE-287
Status published
Products (1)
hp/multifunction_peripheral_digital_sending_software 4.91.00
Published Mar 07, 2011
Tracked Since Feb 18, 2026