CVE-2019-6319

HIGH

HP DeskJet 3630 All-in-One Printers - Cross-Site Request Forgery

Title source: llm
STIX 2.1

Description

HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version SWP1FN1912BR or higher) have a Cross-Site Request Forgery (CSRF) vulnerability that could lead to a denial of service (DOS) or device misconfiguration.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://support.hp.com/us-en/document/c06308143

Scores

CVSS v3 8.1
EPSS 0.0015
EPSS Percentile 35.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H

Details

CWE
CWE-352
Status published
Products (8)
hp/deskjet_3630_f5s43a_firmware < swp1fn1912br
hp/deskjet_3630_f5s57a_firmware < swp1fn1912br
hp/deskjet_3630_k4t93a_firmware < swp1fn1912br
hp/deskjet_3630_k4t99c_firmware < swp1fn1912br
hp/deskjet_3630_k4u00b_firmware < swp1fn1912br
hp/deskjet_3630_k4u03b_firmware < swp1fn1912br
hp/deskjet_3630_v3f21a_firmware < swp1fn1912br
hp/deskjet_3630_v3f22a_firmware < swp1fn1912br
Published Jan 09, 2020
Tracked Since Feb 18, 2026