0 Members and 1 Guest are viewing this topic.
HP says the security risk arose after it was discovered that several models of HP LaserJets feature a "telnet debug shell which could allow a remote attacker to gain unauthorized access to data". Essentially, this means the printers can be accessed through a telnet session without requiring a password - allowing unauthenticated remote attackers to gain access to unencrypted data using this telnet daemon......HP has patched the afflicted firmware for the affected printers. Users of a wide range of HP printers are advised to apply the update. It listed the vulnerable kit as: HP LaserJet Pro P1102w, HP LaserJet Pro P1606dn, HP LaserJet Pro M1213nf MFP, HP LaserJet Pro M1214nfh MFP, HP LaserJet Pro M1216nfh MFP, HP LaserJet Pro M1217nfw MFP. HP HotSpot LaserJet Pro M1218nfs MFP, HP LaserJet Pro M1219nf MFP, HP LaserJet Pro CP1025nw and HP LaserJet Pro CP1025nw.