Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Nguyá N TiậN Då©Ng

#38475of 56,330
7.5Total CVSS
Vulnerabilities · 1
PT-2026-55961
7.5
2026-07-06
Hewlett Packard · Deskjet 2800 Series Printers · CVE-2026-13753
**Name of the Vulnerable Software and Affected Versions** HP Deskjet 2800 Series Printers versions prior to TBP1CN2612AR **Description** A missing authorization issue exists in the embedded webserver of the affected printers. An unauthenticated attacker with network access can send GET requests to multiple exposed administrative API endpoints to retrieve sensitive configuration data. This data includes plaintext Wi-Fi Direct credentials, unique device identity information, and other administrative security state details. While the web interface requires administrator credentials to display these settings, the backend API endpoints fail to validate session state or authentication. Approximately 190,800 devices are estimated to be affected worldwide. **Recommendations** Update the firmware to a version newer than TBP1CN2612AR. Restrict printer network access to trusted internal segments to minimize the risk of exploitation.