CVE-2014-7894
HP OLE Point of Sale Driver < 1.13.001 - Remote Code Execution via OPOSPOSPrinter.ocx
Title source: manualDescription
The OLE Point of Sale (OPOS) drivers before 1.13.003 on HP Point of Sale Windows PCs allow remote attackers to execute arbitrary code via vectors involving OPOSPOSPrinter.ocx for PUSB Thermal Receipt printers, SerialUSB Thermal Receipt printers, Hybrid POS printers with MICR, Value PUSB Receipt printers, and Value Serial/USB Receipt printers, aka ZDI-CAN-2506.
References (2)
Core 2
Core References
Vendor Advisory vendor-advisory
x_refsource_hp
https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04583185
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1031840
Scores
EPSS
0.3008
EPSS Percentile
96.7%
Details
Status
published
Products (1)
hp/ole_point_of_sale_driver
< 1.13.001
Published
Mar 09, 2015
Tracked Since
Feb 18, 2026