CVE-2026-4682

Certain HP DeskJet All in One devices may be vulnerable to remote code execution caused by a buffer overflow when specially crafted Web Services for Devices (WSD) scan requests are improperly validated and handled by the MFP. WSD Scan is a Microsoft Windows–based network scanning protocol that allows a PC to discover scanners (and MFPs) on a network and send scan jobs to them without requiring vendor specific drivers or utilities.
CVSS

No CVSS.

Configurations

No configuration.

History

15 Apr 2026, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-15 15:16

Updated : 2026-04-17 15:09


NVD link : CVE-2026-4682

Mitre link : CVE-2026-4682

CVE.ORG link : CVE-2026-4682


JSON object : View

Products Affected

No product.

CWE
CWE-121

Stack-based Buffer Overflow