CVE-2024-2209

MEDIUM
Published Mar 27, 2024 Modified Feb 20, 2026 CWE-94

Description

A user with administrative privileges can create a compromised dll file of the same name as the original dll within the HP printer’s Firmware Update Utility (FUU) bundle and place it in the Microsoft Windows default downloads directory which can lead to potential arbitrary code execution.

Is your site exposed to CVE-2024-2209?

Run a free security scan — no signup, results in seconds.

CVSS v3.1 Score

6.3
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L

Weakness Type (CWE)

CWE-94 CWE-94

Affected Products

Vendor Product
hp 26k70b_firmware
hp 26k70b
hp 297x1a_firmware
hp 297x1a
hp 2a9q5a_firmware
hp 2a9q5a
hp 26k72a_firmware
hp 26k72a
hp 26k69a_firmware
hp 26k69a
hp 26k70a_firmware
hp 26k70a
hp 26k71a_firmware
hp 26k71a
hp 26k68a_firmware
hp 26k68a
hp 26k67a_firmware
hp 26k67a
hp 3xv19a_firmware
hp 3xv19a
hp 7fr52a_firmware
hp 7fr52a
hp 7fr57a_firmware
hp 7fr57a
hp 7fr53a_firmware
hp 7fr53a
hp 7fr58a_firmware
hp 7fr58a
hp 7fr61a_firmware
hp 7fr61a
hp 5ar83a_firmware
hp 5ar83a
hp 5ar84a_firmware
hp 5ar84a
hp 5ar85a_firmware
hp 5ar85a
hp 8rk11a_firmware
hp 8rk11a
hp 3xv17a_firmware
hp 3xv17a
hp 4ws04a_firmware
hp 4ws04a
hp 7fr21a_firmware
hp 7fr21a
hp 7fr20a_firmware
hp 7fr20a
hp 26k72b_firmware
hp 26k72b
hp 26k67b_firmware
hp 26k67b
hp 297w8a_firmware
hp 297w8a
hp 26k68b_firmware
hp 26k68b
hp 297x0a_firmware
hp 297x0a
hp 26k70b_firmware
hp 26k70b
hp 297x1a_firmware
hp 297x1a
hp 2a9q5a_firmware
hp 2a9q5a
hp 26k72a_firmware
hp 26k72a
hp 26k69a_firmware
hp 26k69a
hp 26k70a_firmware
hp 26k70a
hp 26k71a_firmware
hp 26k71a
hp 26k68a_firmware
hp 26k68a
hp 26k67a_firmware
hp 26k67a
hp 3xv19a_firmware
hp 3xv19a
hp 7fr52a_firmware
hp 7fr52a
hp 7fr57a_firmware
hp 7fr57a
hp 26k72b_firmware
hp 26k72b
hp 26k67b_firmware
hp 26k67b
hp 297w8a_firmware
hp 297w8a
hp 26k68b_firmware
hp 26k68b
hp 297x0a_firmware
hp 297x0a
hp 7fr53a_firmware
hp 7fr53a
hp 7fr58a_firmware
hp 7fr58a
hp 7fr61a_firmware
hp 7fr61a
hp 5ar83a_firmware
hp 5ar83a
hp 5ar84a_firmware
hp 5ar84a
hp 5ar85a_firmware
hp 5ar85a
hp 8rk11a_firmware
hp 8rk11a
hp 3xv17a_firmware
hp 3xv17a
hp 4ws04a_firmware
hp 4ws04a
hp 7fr21a_firmware
hp 7fr21a
hp 7fr20a_firmware
hp 7fr20a
hp 7fr21a_firmware
hp 7fr21a
hp 26k72b_firmware
hp 26k72b
hp 26k67b_firmware
hp 26k67b
hp 297w8a_firmware
hp 297w8a
hp 26k68b_firmware
hp 26k68b
hp 297x0a_firmware
hp 297x0a
hp 26k70b_firmware
hp 26k70b
hp 297x1a_firmware
hp 297x1a
hp 2a9q5a_firmware
hp 2a9q5a
hp 26k72a_firmware
hp 26k72a
hp 26k69a_firmware
hp 26k69a
hp 26k70a_firmware
hp 26k70a
hp 26k71a_firmware
hp 26k71a
hp 26k68a_firmware
hp 26k68a
hp 26k67a_firmware
hp 26k67a
hp 3xv19a_firmware
hp 3xv19a
hp 7fr52a_firmware
hp 7fr52a
hp 7fr57a_firmware
hp 7fr57a
hp 7fr53a_firmware
hp 7fr53a
hp 7fr58a_firmware
hp 7fr58a
hp 7fr61a_firmware
hp 7fr61a
hp 5ar83a_firmware
hp 5ar83a
hp 5ar84a_firmware
hp 5ar84a
hp 5ar85a_firmware
hp 5ar85a
hp 8rk11a_firmware
hp 8rk11a
hp 3xv17a_firmware
hp 3xv17a
hp 4ws04a_firmware
hp 4ws04a

References

Frequently Asked Questions

What is CVE-2024-2209? +
A user with administrative privileges can create a compromised dll file of the same name as the original dll within the HP printer’s Firmware Update Utility (FUU) bundle and place it in the Microsoft Windows default downloads directory which can lead to potential arbitrary code execution. It has a CVSS v3.1 base score of 6.3 (MEDIUM).
How severe is CVE-2024-2209? +
CVE-2024-2209 has a CVSS v3.1 score of 6.3 out of 10, rated MEDIUM. This is a medium-severity vulnerability that should be remediated as part of regular maintenance.
What products are affected by CVE-2024-2209? +
CVE-2024-2209 affects products from hp, specifically: 26k67a, 26k67a_firmware, 26k67b, 26k67b_firmware, 26k68a, 26k68a_firmware, 26k68b, 26k68b_firmware, 26k69a, 26k69a_firmware, 26k70a, 26k70a_firmware, 26k70b, 26k70b_firmware, 26k71a, 26k71a_firmware, 26k72a, 26k72a_firmware, 26k72b, 26k72b_firmware, 297w8a, 297w8a_firmware, 297x0a, 297x0a_firmware, 297x1a, 297x1a_firmware, 2a9q5a, 2a9q5a_firmware, 3xv17a, 3xv17a_firmware, 3xv19a, 3xv19a_firmware, 4ws04a, 4ws04a_firmware, 5ar83a, 5ar83a_firmware, 5ar84a, 5ar84a_firmware, 5ar85a, 5ar85a_firmware, 7fr20a, 7fr20a_firmware, 7fr21a, 7fr21a_firmware, 7fr52a, 7fr52a_firmware, 7fr53a, 7fr53a_firmware, 7fr57a, 7fr57a_firmware, 7fr58a, 7fr58a_firmware, 7fr61a, 7fr61a_firmware, 8rk11a, 8rk11a_firmware. Check the affected products table above for specific version ranges.
How do I check if I'm vulnerable to CVE-2024-2209? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.

Related Vulnerabilities

Don't wait for an exploit

Scan your website for vulnerabilities like CVE-2024-2209 — free, no signup required.