<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Wazi &#187; color_laserjet</title>
	<atom:link href="http://olex.openlogic.com/wazi/tag/color_laserjet/feed/" rel="self" type="application/rss+xml" />
	<link>http://olex.openlogic.com/wazi</link>
	<description>Thinking OPEN</description>
	<lastBuildDate>Fri, 19 Mar 2010 03:29:34 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<p></p>
<div style="align:right;"><div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div></p>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<p></p>
<div style="align:right;"><div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div></p>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-2/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-2/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-2/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-2/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-2/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-2/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-3/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-3/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-3/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-3/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-3/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-3/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-4/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-4/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-4/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-4/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-4/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-4/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-5/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-5/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-5/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-5/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-5/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-5/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-5/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-5/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-6/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-6/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-6/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-6/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-6/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-6/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-6/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-6/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-7/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-7/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-7/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-7/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-7/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-7/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-7/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-7/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-8/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-8/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-8/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-8/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-8/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-8/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-8/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-8/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-9/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-9/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-9/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-9/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-9/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-9/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-9/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-9/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [Medium]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-10/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-10/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-10/</guid>
		<description><![CDATA[Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config....

CVE Identifier: CVE-2009-0940
Vulnerability Type(s): 
Severity: Medium
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [Medium]
</ul>
<h3>Description</h3>
<p>Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network configuration via a NetIPChange request to hp/device/config_result_YesNo.html/config, or (3) change the password via the Password and ConfirmPassword parameters to hp/device/set_config_password.html/config.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0940" target="_blank">CVE-2009-0940</a><br />
Severity: Medium
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-medium-10/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Color Laserjet 20081211_46.211.2 and prior [High]</title>
		<link>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-10/</link>
		<comments>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-10/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 00:00:00 +0000</pubDate>
		<dc:creator>Security Team</dc:creator>
				<category><![CDATA[Security Notifications]]></category>
		<category><![CDATA[color_laserjet]]></category>

		<guid isPermaLink="false">http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-10/</guid>
		<description><![CDATA[The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access....

CVE Identifier: CVE-2009-0941
Vulnerability Type(s): 
Severity: High
]]></description>
			<content:encoded><![CDATA[<h3>Affects:</h3>
<ul>
<li>Color Laserjet 20081211_46.211.2 and prior [High]
</ul>
<h3>Description</h3>
<p>The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access.</p>
<p>If you have questions about this security warning or need to have it translated and you have an active technical support contract, please call 1-888-OPENLOGIC or email us at support@openlogic.com.</p>
<p>
CVE Identifier: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0941" target="_blank">CVE-2009-0941</a><br />
Severity: High
</p>
<div id="attachment_2101" class="wp-caption alignright" style="width: 193px"><a href="http://nvd.nist.gov/download.cfm"><img class="size-medium wp-image-2101" title="NVD Logo" src="http://olex.openlogic.com/wazi/wp-content/uploads/2009/01/nvd.png" alt="National Vulnerabilities Database" width="183" height="87" /></a><p class="wp-caption-text">NIST National Vulnerabilities Database</p></div>
]]></content:encoded>
			<wfw:commentRss>http://olex.openlogic.com/wazi/2009/color-laserjet-20081211_462112-and-prior-high-10/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
