SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityAnalyzed

CVE-2025-3508

Certain HP DesignJet products may be vulnerable to information disclosure though printer's web interface allowing unauthenticated users to view sensitive print job information.

MEDIUM 6.0EPSS 0.92%

Does this matter?

Lower severity and a low EPSS score (0.92%). Track it; it rarely justifies an emergency change on its own.

Description

Certain HP DesignJet products may be vulnerable to information disclosure though printer's web interface allowing unauthenticated users to view sensitive print job information.

CVSS 4.0
6.0 MEDIUMCVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/M
EPSS
0.92% probability · 58th percentile
CISA KEV
Not listed
Weakness
CWE-200
Affected
hp/w3z72e firmware · hp/w3z72f firmware · hp/w3z72g firmware · hp/w3z72h firmware · hp/w6b55a firmware · hp/w6b55b firmware · hp/w6b55c firmware · hp/w6b55d firmware · hp/w6b55e firmware · hp/w6b55f firmware · hp/w6b55g firmware · hp/w6b55h firmware · hp/w6b56a firmware · hp/w6b56b firmware · hp/w6b56c firmware · hp/w6b56d firmware · hp/w6b56e firmware · hp/w6b56f firmware · hp/w6b56g firmware · hp/w6b56h firmware · +40 more
Source
hp-security-alert@hp.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.