First published: Fri Apr 28 2023(Updated: )
Certain DesignJet and PageWide XL TAA compliant models may have risk of potential information disclosure if the hard disk drive is physically removed from the printer.
Credit: hp-security-alert@hp.com hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
hp DesignJet Z6 | <jgr6_09_22_51.2 | |
HP DesignJet Z6 | ||
HP DesignJet Z6 | <jgr6_09_22_51.2 | |
HP DesignJet Z6 | ||
HP DesignJet Z9 Series | <jgr9_09_22_51.2 | |
HP DesignJet Z9 | ||
HP DesignJet Z9 Series Firmware | <jgr9_09_22_51.2 | |
hp DesignJet z9dr firmware | ||
hp DesignJet Z9+ Pro firmware | ||
hp DesignJet Z9+ Pro firmware | ||
HP PageWide XL 4700 | =_firmware | |
HP PageWide XL 4700 | ||
HP PageWide XL 4500 | =_firmware | |
HP PageWide XL 4500 | ||
HP PageWide XL 4100 | =_firmware | |
HP PageWide XL 4100 | ||
HP PageWide XL 4600 | =_firmware | |
HP PageWide XL 4600 | ||
HP PageWide XL 8000 | =_firmware | |
HP PageWide XL 8000 | ||
All of | ||
hp DesignJet Z6 | <jgr6_09_22_51.2 | |
HP DesignJet Z6 | ||
All of | ||
HP DesignJet Z6 | <jgr6_09_22_51.2 | |
HP DesignJet Z6 | ||
All of | ||
HP DesignJet Z9 Series | <jgr9_09_22_51.2 | |
HP DesignJet Z9 | ||
All of | ||
HP DesignJet Z9 Series Firmware | <jgr9_09_22_51.2 | |
hp DesignJet z9dr firmware | ||
All of | ||
hp DesignJet Z9+ Pro firmware | ||
hp DesignJet Z9+ Pro firmware | ||
All of | ||
HP PageWide XL 4700 | =_firmware | |
HP PageWide XL 4700 | ||
All of | ||
HP PageWide XL 4500 | =_firmware | |
HP PageWide XL 4500 | ||
All of | ||
HP PageWide XL 4100 | =_firmware | |
HP PageWide XL 4100 | ||
All of | ||
HP PageWide XL 4600 | =_firmware | |
HP PageWide XL 4600 | ||
All of | ||
HP PageWide XL 8000 | =_firmware | |
HP PageWide XL 8000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-1526 poses a potential information disclosure risk if the hard disk drive is removed from specific HP DesignJet and PageWide XL printers.
CVE-2023-1526 affects certain models of HP DesignJet Z6, Z9, and PageWide XL printers when specific firmware versions are in use.
To mitigate the risks of CVE-2023-1526, avoid physically removing the hard disk drive from the affected printers, and regularly update your firmware.
CVE-2023-1526 does not provide a traditional patch, but updating to the latest firmware version is recommended to address vulnerabilities.
If you suspect exploitation of CVE-2023-1526, immediately secure the affected printer and consult your organization's incident response plan.