Hewlett-Packard Company Information for VU#377003

Hewlett Packard JetDirect-enabled printers disclose Telnet/HTTP passwords in hex format via "SNMP READ" request

Status

Affected

Vendor Statement

Update to firmware version X.22.09 or later.

For more information please refer to:

HP Jetdirect Print Servers - Making HP Jetdirect Print Servers Secure on the Network
http://www.hp.com/cposupport/networking/support_doc/bpj05999.html#P26_2431

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References

None

Addendum

The CERT/CC has no additional comments at this time.

If you have feedback, comments, or additional information about this vulnerability, please send us email.