目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2021-3438 PoC — HP 多款产品缓冲区错误漏洞

来源
关联漏洞
标题: HP 多款产品缓冲区错误漏洞 (CVE-2021-3438)
Description:HP Color LaserJet Pro M280-M281是美国惠普(HP)公司的一款打印机。 HP 多款产品存在缓冲区错误漏洞,该漏洞源于软件驱动程序中的潜在缓冲区溢出可能导致特权升级。以下产品和版本受到影响:HP Color Laser 150 Series,HP Color Laser MFP 178/179 Series,HP Laser 103/107/108 Series,HP Laser 408 Printer Series,HP Laser MFP 131/133/135/137/13
Description
Detection and remediation for CVE-2021-3438 with Powershell
介绍
## What is included?
* CVE-2021-3438_detection v2_sccm.ps1 is a script to run via sccm to get a small report on the vulnerability of managed devices.
* CVE-2021-3438_detection.ps1 is a script to run manually or remote on a managed device.
* CVE-2021-3438_remediation.ps1 is a script to check and run the installers if vulnerable drivers are detected.
* HP-Samsung.exe is the HP/Samsung fix installer
* Xerox is the Xerox fix installer.

## How to execute these scripts?
Instant run:
```
PS> CVE-2021-3438_detection.ps1
```
Importing the function:
```
PS> import-module CVE-2021-3438_detection.ps1
PS> Get-VulnerablePrinter
```
or
```
PS> . .\CVE-2021-3438_detection.ps1
PS> Get-VulnerablePrinter
```

## Sources
* https://support.hp.com/us-en/document/ish_3900395-3833905-16/hpsbpi03724
* https://securitydocs.business.xerox.com/wp-content/uploads/2021/05/cert_Security_Mini_Bulletin_XRX21K_for_B2XX_PH30xx_3260_3320_WC3025_32xx_33xx.pdf
文件快照

登录后查看神龙缓存的 POC 文件快照

登录查看
备注
    1. 建议优先通过来源进行访问。
    2. 本地 POC 快照面向订阅用户开放;当原始来源失效或无法访问时,本地镜像作为订阅权益的一部分提供。
    3. 持续抓取、验证、维护这份 POC 档案需要不少投入,因此本地快照已纳入付费订阅。您的订阅是让这份资料能继续走下去的关键,由衷感谢。 查看订阅方案 →