CVE-2007-0161 - CVE House
Back to Database
Status published Medium CVE-2007-0161

The PML Driver HPZ12 (HPZipm12.exe) in the HP all-in-one drivers,...

Vulnerability Description

The PML Driver HPZ12 (HPZipm12.exe) in the HP all-in-one drivers, as used by multiple HP products, uses insecure SERVICE_CHANGE_CONFIG DACL permissions, which allows local users to gain privileges and execute arbitrary programs, as demonstrated by modifying the binpath argument, a related issue to CVE-2006-0023.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-0161

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

pml driver hpz12, color laserjet 4650, officejet 4100, officejet 5100, officejet 5500, officejet 6100, officejet 7100, officejet d, officejet g, officejet k, psc 1100, psc 1200, psc 1210 all-in-one, psc 1300, psc 2100, psc 2200, psc 2400 photosmart all-in-one, psc 2500 photosmart all-in-one, psc 2510 photosmart, psc 700, psc 900
Vulnerable Versions:
Unknown

Timeline

Official Publish: January 10th, 2007
Last Modified: August 7th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.