Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2018-5921

8.8 · HIGH
Published Oct 3, 2018 hp CWE-352 EPSS 0.74% (52th pctl)

Overview

CVE-2018-5921 is a high-severity vulnerability affecting hp f2a70a_firmware. It was published on October 3, 2018 and has a CVSS 3.0 base score of 8.8 (HIGH).

This vulnerability has a CVSS 3.0 base score of 8.8, rated HIGH. It can be exploited remotely over the network. No authentication or special privileges are required for exploitation.

Technical Description

A potential security vulnerability has been identified with certain HP printers and MFPs in 2405129_000052 and other firmware versions. This vulnerability is known as Cross Site Request Forgery, and could potentially be exploited remotely to allow elevation of privilege.

Remediation

Check the references section for vendor advisories and patches from hp. Update f2a70a_firmware to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Affected Products

Vendor Product Versions Status
hp f2a70a_firmware >= 0, < 2405129_000052 Affected
hp f2a71a_firmware >= 0, < 2405129_000052 Affected
hp f2a67a_firmware >= 0, < 2405129_000052 Affected
hp b5l26a_firmware >= 0, < 2405129_000056 Affected
hp b5l39a_firmware >= 0, < 2405129_000056 Affected
hp c2s11a_firmware >= 0, < 2405129_000055 Affected
hp c2s11v_firmware >= 0, < 2405129_000055 Affected
hp c2s12a_firmware >= 0, < 2405129_000055 Affected
hp c2s12v_firmware >= 0, < 2405129_000055 Affected
hp l1h45a_firmware >= 0, < 2405129_000055 Affected

Frequently Asked Questions

What is CVE-2018-5921?

CVE-2018-5921 is a high-severity vulnerability affecting hp f2a70a_firmware. It was published on October 3, 2018 and has a CVSS 3.0 base score of 8.8 (HIGH).

How severe is CVE-2018-5921?

This vulnerability has a CVSS 3.0 base score of 8.8, rated HIGH. It can be exploited remotely over the network. No authentication or special privileges are required for exploitation.

How do I fix or remediate CVE-2018-5921?

Check the references section for vendor advisories and patches from hp. Update f2a70a_firmware to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2018-5921?

CyberStrike's AI-powered security agents can automatically detect CVE-2018-5921 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.