vendor:
OfficeJet 8210
by:
Anonymous
7,8
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: OfficeJet 8210
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2020
Create a bind shell on an unpatched OfficeJet 8210
This exploit uses a script to profile.d and reboot the device. When it comes back online then nc to port 1270. The script is sent to the device using the PJL FSDOWNLOAD command. The script is then queried using the PJL FSQUERY command. Finally, the SNMP SET command is used to reboot the device.
Mitigation:
Ensure that all devices are patched and up to date.