CVE-2025-2268

HIGH
Published Mar 14, 2025 Modified Jan 16, 2026 CWE-241

Description

The HP LaserJet MFP M232-M237 Printer Series may be vulnerable to a denial of service attack when a specially crafted request message is sent via Internet Printing Protocol (IPP).

CVSS v3.1 Score

7.5
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weakness Type (CWE)

CWE-241 CWE-241

Affected Products

Vendor Product
hp 6gx09a_firmware
hp 6gx09a
hp 6gx09e_firmware
hp 6gx09e
hp 9yf91e_firmware
hp 9yf91e
hp 9yg02e_firmware
hp 9yg02e
hp 9yg05e_firmware
hp 9yg05e
hp 6gw71a_firmware
hp 6gw71a
hp 6gw99a_firmware
hp 6gw99a
hp 6gx00a_firmware
hp 6gx00a
hp 6gx03a_firmware
hp 6gx03a
hp 6gx04a_firmware
hp 6gx04a
hp 6gx05a_firmware
hp 6gx05a
hp 6gx06a_firmware
hp 6gx06a
hp 9yf88a_firmware
hp 9yf88a
hp 9yf89a_firmware
hp 9yf89a
hp 9yf90a_firmware
hp 9yf90a
hp 9yf91a_firmware
hp 9yf91a
hp 9yf92a_firmware
hp 9yf92a
hp 9yf94a_firmware
hp 9yf94a
hp 9yf95a_firmware
hp 9yf95a
hp 9yf96a_firmware
hp 9yf96a
hp 9yf97a_firmware
hp 9yf97a
hp 9yf98a_firmware
hp 9yf98a
hp 9yg02a_firmware
hp 9yg02a
hp 9yg05a_firmware
hp 9yg05a
hp 9yg08a_firmware
hp 9yg08a
hp 9yg09a_firmware
hp 9yg09a
hp 9yg10a_firmware
hp 9yg10a
hp 9yg11a_firmware
hp 9yg11a
hp 1y7d4a_firmware
hp 1y7d4a
hp 2a129a_firmware
hp 2a129a
hp 2a130a_firmware
hp 2a130a
hp 2u589a_firmware
hp 2u589a
hp 2u589f_firmware
hp 2u589f
hp 7md69a_firmware
hp 7md69a
hp 7md70a_firmware
hp 7md70a
hp 7md70f_firmware
hp 7md70f
hp 7md71a_firmware
hp 7md71a
hp 7md72a_firmware
hp 7md72a
hp 7md73a_firmware
hp 7md73a
hp 7md74a_firmware
hp 7md74a
hp 6gw99e_firmware
hp 6gw99e
hp 6gx00e_firmware
hp 6gx00e
hp 6gx01a_firmware
hp 6gx01a
hp 6gx02e_firmware
hp 6gx02e
hp 6gx05e_firmware
hp 6gx05e
hp 7md75a_firmware
hp 7md75a
hp 7md76a_firmware
hp 7md76a
hp 2a130e_firmware
hp 2a130e
hp 2u589e_firmware
hp 2u589e
hp 6hu08a_firmware
hp 6hu08a
hp 7md70e_firmware
hp 7md70e
hp 7md72e_firmware
hp 7md72e
hp 7md74e_firmware
hp 7md74e
hp 7md76e_firmware
hp 7md76e

References

Frequently Asked Questions

What is CVE-2025-2268? +
The HP LaserJet MFP M232-M237 Printer Series may be vulnerable to a denial of service attack when a specially crafted request message is sent via Internet Printing Protocol (IPP). It has a CVSS v3.1 base score of 7.5 (HIGH).
How severe is CVE-2025-2268? +
CVE-2025-2268 has a CVSS v3.1 score of 7.5 out of 10, rated HIGH. This is a high-severity vulnerability that should be prioritized for patching.
What products are affected by CVE-2025-2268? +
CVE-2025-2268 affects products from hp, specifically: 1y7d4a, 1y7d4a_firmware, 2a129a, 2a129a_firmware, 2a130a, 2a130a_firmware, 2a130e, 2a130e_firmware, 2u589a, 2u589a_firmware, 2u589e, 2u589e_firmware, 2u589f, 2u589f_firmware, 6gw71a, 6gw71a_firmware, 6gw99a, 6gw99a_firmware, 6gw99e, 6gw99e_firmware, 6gx00a, 6gx00a_firmware, 6gx00e, 6gx00e_firmware, 6gx01a, 6gx01a_firmware, 6gx02e, 6gx02e_firmware, 6gx03a, 6gx03a_firmware, 6gx04a, 6gx04a_firmware, 6gx05a, 6gx05a_firmware, 6gx05e, 6gx05e_firmware, 6gx06a, 6gx06a_firmware, 6gx09a, 6gx09a_firmware, 6gx09e, 6gx09e_firmware, 6hu08a, 6hu08a_firmware, 7md69a, 7md69a_firmware, 7md70a, 7md70a_firmware, 7md70e, 7md70e_firmware, 7md70f, 7md70f_firmware, 7md71a, 7md71a_firmware, 7md72a, 7md72a_firmware, 7md72e, 7md72e_firmware, 7md73a, 7md73a_firmware, 7md74a, 7md74a_firmware, 7md74e, 7md74e_firmware, 7md75a, 7md75a_firmware, 7md76a, 7md76a_firmware, 7md76e, 7md76e_firmware, 9yf88a, 9yf88a_firmware, 9yf89a, 9yf89a_firmware, 9yf90a, 9yf90a_firmware, 9yf91a, 9yf91a_firmware, 9yf91e, 9yf91e_firmware, 9yf92a, 9yf92a_firmware, 9yf94a, 9yf94a_firmware, 9yf95a, 9yf95a_firmware, 9yf96a, 9yf96a_firmware, 9yf97a, 9yf97a_firmware, 9yf98a, 9yf98a_firmware, 9yg02a, 9yg02a_firmware, 9yg02e, 9yg02e_firmware, 9yg05a, 9yg05a_firmware, 9yg05e, 9yg05e_firmware, 9yg08a, 9yg08a_firmware, 9yg09a, 9yg09a_firmware, 9yg10a, 9yg10a_firmware, 9yg11a, 9yg11a_firmware. Check the affected products table above for specific version ranges.
How do I check if I'm vulnerable to CVE-2025-2268? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.

Related Vulnerabilities

Don't wait for an exploit

Scan your website for vulnerabilities like CVE-2025-2268 — free, no signup required.

Start Free Scan