First published: Mon Mar 07 2011(Updated: )
HP Multifunction Peripheral (MFP) Digital Sending Software (DSS) 4.91.00 does not properly configure authentication settings of managed devices within device templates, which allows attackers to access these devices via actions that were intended to require authentication.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hp Multifunction Peripheral Digital Sending Software | =4.91.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0279 has been classified as a medium severity vulnerability due to its potential to allow unauthorized access to managed devices.
To fix CVE-2011-0279, ensure that authentication settings for managed devices are properly configured in the device templates.
CVE-2011-0279 affects HP Multifunction Peripheral Digital Sending Software version 4.91.00.
CVE-2011-0279 allows attackers to perform actions on managed devices without proper authentication.
Until a patch is applied, a temporary workaround is to review and secure the configuration settings of affected devices.