CVE-2013-6427: HP Linux Imaging And Printing Project
Medium severity, CVSS 6.8. EPSS: 4% chance of exploitation in the next 30 days.
upgrade.py in the hp-upgrade service in HP Linux Imaging and Printing (HPLIP) 3.x through 3.13.11 launches a program from an http URL, which allows man-in-the-middle attackers to execute arbitrary code by gaining control over the client-server data stream.
Affected products
- HP Linux Imaging And Printing Project: version 3.9.2 only; version 3.9.4 only; version 3.9.4b only; version 3.9.6 only; version 3.9.8 only; version 3.9.10 only; …
Published 2013-12-09. Last modified 2026-06-17.