Summary
The remote HP Web Jetadmin is vulnerable to multiple exploits. This includes, but is not limited to, full remote administrative access. An attacker can execute code remotely with SYSTEM level (or root) privileges by invoking the ExecuteFile function. To further exacerbate this issue, there is working exploit code for multiple vulnerabilities within this product.
Solution
The issues are resolved in HP Web Jetadmin version 7.5
References
Severity
Classification
-
CVSS Base Score: 7.8
AV:N/AC:L/Au:N/C:N/I:N/A:C
Related Vulnerabilities
- Adobe AIR Multiple Vulnerabilities-01 Dec13 (Windows)
- Adobe Flash Player Buffer Overflow Vulnerability - Apr14 (Windows)
- Adobe Air Multiple Vulnerabilities June-2012 (Mac OS X)
- Adobe Acrobat Multiple Vulnerabilities April-2012 (Windows)
- 7T Interactive Graphical SCADA System Multiple Security Vulnerabilities