Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Jetdirect and the Embedded Web Server (EWS) on certain HP LaserJet and Color LaserJet printers, and HP Digital Senders, allow remote attackers to inject arbitrary web script or HTML via the (1) Product_URL or (2) Tech_URL parameter in an Apply action to the support_param.html/config script.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
HP JetDirect打印机多个跨站脚本漏洞
Vulnerability Description
HP JetDirect打印机是惠普公司开发的集成网络功能的打印机。 HP的JetDirect系列打印机和数码扫描发送一体机没有正确的过滤对support_param.html/config页面所提交的Product_URL和Tech_URL参数,远程攻击者可以通过向上述机器所内嵌的Web服务器提交恶意请求执行存储式跨站脚本攻击,导致向用户的浏览器会话中注入并执行任意HTML和脚本代码。
CVSS Information
N/A
Vulnerability Type
N/A