CVE-2012-5221: HP Color Laserjet 3000

Medium severity, CVSS 5.0. EPSS: 3.9% chance of exploitation in the next 30 days.

Directory traversal vulnerability in the PostScript Interpreter, as used on the HP LaserJet 4xxx, 5200, 90xx, M30xx, M4345, M50xx, M90xx, P3005, and P4xxx; LaserJet Enterprise P3015; Color LaserJet 3xxx, 47xx, 5550, 9500, CM60xx, CP35xx, CP4005, and CP6015; Color LaserJet Enterprise CP4xxx; and 9250c Digital Sender with model-dependent firmware through 52.x allows remote attackers to read arbitrary files via unknown vectors.

Affected products

  • HP Color Laserjet 3000: version q7534a only
  • HP Color Laserjet 3800: version q5981a only
  • HP Color Laserjet 4700: version q7492a only
  • HP Color Laserjet 4730 Mfp: version cb480a only
  • HP Color Laserjet 5550: version q3714a only
  • HP Color Laserjet 9500 Mfp: version c8549a only
  • HP Color Laserjet CM6030 Mfp: version ce664a only
  • HP Color Laserjet CM6040 Mfp: version q3939a only
  • HP Color Laserjet CP3505: version cb442a only
  • HP Color Laserjet CP3525: version cc469a only
  • HP Color Laserjet CP4005: version cb503a only
  • HP Color Laserjet CP6015: version q3932a only
  • HP Color Laserjet Enterprise CP4025: version cc490a only
  • HP Color Laserjet Enterprise CP4525: version cc493a only
  • HP Digital Sender 9250c: version cb472a only
  • HP Laserjet 4240: version q7785a only
  • HP Laserjet 4250: version q5400a only
  • HP Laserjet 4345 Mfp: version q3942a only
  • HP Laserjet 4350: version q5407a only
  • HP Laserjet 5200l: version q7543a only
  • HP Laserjet 5200n: version q7543a only
  • HP Laserjet 9040: version q7697a only
  • HP Laserjet 9040 Mfp: version q3721a only
  • HP Laserjet 9050: version q7697a only
  • HP Laserjet 9050 Mfp: version q3721a only
  • and 12 more

Published 2013-04-29. Last modified 2026-06-16.