CVE Database
/

CVE-2024-5143

Back to search

CVE-2024-5143

Published: May 23, 2024

Modified: Oct 31, 2024

PUBLISHED

Description

A user with device administrative privileges can change existing SMTP server settings on the device, without having to re-enter SMTP server credentials. By redirecting send-to-email traffic to the new server, the original SMTP server credentials may potentially be exposed.

VendorProductVersions

HP Inc.

Certain HP LaserJet Pro Printers

affected
See HP Security Bulletin reference for affected versions.

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now