CVE-2013-6427

Description

upgrade.py in the hp-upgrade service in HP Linux Imaging and Printing (HPLIP) 3.x through 3.13.11 launches a program from an http URL, which allows man-in-the-middle attackers to execute arbitrary code by gaining control over the client-server data stream.

Risk Information

Base Score
8.1
MODERATE
Vector
AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.78

Associated Vulnerability

VulnerabilityOS Platform
hplip security update(DSA-2829-1) hplip_3.12.6-3.1+deb7u1_i386.debLinux
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.11.7NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.11.3aNCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.11.3NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.11.1NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.10.6NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.10.5NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.10.2NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.9.12NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.9.10NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.9.8NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.9.6NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.9.4bNCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.9.4NCM
Multiple Vulnerabilities affected in linux_imaging_and_printing_project 3.9.2NCM
Vulnerabilities CVE-2012-6108 ,CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.12.11NCM
Vulnerabilities CVE-2012-6108 ,CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.12.10-aNCM
Vulnerabilities CVE-2012-6108 ,CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.12.10NCM
Vulnerabilities CVE-2012-6108 ,CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.12.9NCM
Vulnerabilities CVE-2012-6108 ,CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.12.6NCM
Vulnerabilities CVE-2012-6108 ,CVE-2013-0200 ,CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.12.4NCM
Vulnerabilities CVE-2012-6108 ,CVE-2013-0200 ,CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.12.2NCM
Vulnerabilities CVE-2012-6108 ,CVE-2013-0200 ,CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.11.10NCM
Vulnerabilities CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.9NCM
Vulnerabilities CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.8NCM
Vulnerabilities CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.7NCM
Vulnerabilities CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.6NCM
Vulnerabilities CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.5NCM
Vulnerabilities CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.4NCM
Vulnerabilities CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.3NCM
Vulnerabilities CVE-2013-4325 ,CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.2NCM
Vulnerabilities CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.13.10NCM
Vulnerabilities CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.11.12NCM
Vulnerabilities CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.11.3-aNCM
Vulnerabilities CVE-2013-6402 ,CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.9.4-bNCM
Vulnerabilities CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.11.5NCM
Vulnerabilities CVE-2013-6427 are affected in linux_imaging_and_printing_project 3.10.9NCM
Improper Control of Generation of Code (Code Injection) Vulnerability (CVE-2013-6427)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234