CVE-2011-4786
HP Easy Printer Care Software < 2.5 - Code Injection
Title source: ruleDescription
A certain ActiveX control in HPTicketMgr.dll in HP Easy Printer Care Software 2.5 and earlier allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via unspecified vectors, a different vulnerability than CVE-2011-2404 and CVE-2011-4787.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/18381
metasploit
WORKING POC
GREAT
by Andrea Micalizzi, juan vazquez · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/hp_easy_printer_care_xmlcachemgr.rb
Scores
EPSS
0.6363
EPSS Percentile
98.4%
Details
CWE
CWE-94
Status
published
Products (1)
hp/easy_printer_care_software
< 2.5
Published
Jan 12, 2012
Tracked Since
Feb 18, 2026