← All CVEs

CVE-2014-7889

high · 10

The OLE Point of Sale (OPOS) drivers before 1.13.003 on HP Point of Sale Windows PCs allow remote attackers to execute arbitrary code via vectors involving OPOSLineDisplay.ocx for Retail RP7 VFD Customer Display monitors, Retail Integrated 2x20 Display monitors, Retail Integrated 2x20 Complex monitors, POS Pole Display monitors, Graphical POS Pole Display monitors, and LCD Pole Display monitors, aka ZDI-CAN-2511.

10
CVSS
10.3%
EPSS (exploit prob.)
96th
EPSS percentile
2015-03-09
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
hpole_point_of_sale_driver<= 1.13.001
hpgraphical_pos_pole_display_qz704aaall versions
hplcd_pole_display_f7a93aaall versions
hppos_pole_display_fk225aaall versions
hpretail_integrated_2x20_complex_g7g29aaall versions
hpretail_integrated_2x20_display_g6u79aaall versions
hpretail_rp7_vfd_customer_display_qz701aaall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2014-7889