Some HP printers using Jetdirect firmware include an Embedded Web Server (EWS), which allows remote administration of the device. Reportedly, this embedded web server may handle passwords in an insecure manner. Full details of this vulnerability are not currently available. HP has reported that exploitation of this vulnerability may result in an attacker gaining unauthorized access to the device, or being able to create a denial of service condition
Some HP printers using Jetdirect firmware include an Embedded Web Server (EWS), which allows remote administration of the device. Reportedly, this embedded web server may handle passwords in an insecure manner. Full details of this vulnerability are not currently available. HP has reported that exploitation of this vulnerability may result in an attacker gaining unauthorized access to the device, or being able to create a denial of service condition