CVE-2014-7889
The OLE Point of Sale (OPOS) drivers before 1.13.003 on HP Point of Sale Windows PCs allow remote attackers to execute arbitrary code via vectors involving OPOSLineDisplay.ocx for Retail RP7 VFD Customer Display monitors, Retail Integrated 2x20 Display monitors, Retail Integrated 2x20 Complex monitors, POS Pole Display monitors, Graphical POS Pole Display monitors, and LCD Pole Display monitors, aka ZDI-CAN-2511.
Published:Mar 9, 2015
Last Modified:Apr 12, 2025
EPS:Mar 9, 2015
EPSS Score:0.28809
CVSS Score:10
Affected Products
Vendor
Product
Action
Vendor
Hp
Product
Graphical Pos Pole Display Qz704aa
Hp
Graphical Pos Pole Display Qz704aa
Vendor
Hp
Product
Lcd Pole Display F7a93aa
Hp
Lcd Pole Display F7a93aa
Vendor
Hp
Product
Ole Point Of Sale Driver
Hp
Ole Point Of Sale Driver
Vendor
Hp
Product
Pos Pole Display Fk225aa
Hp
Pos Pole Display Fk225aa
Vendor
Hp
Product
Retail Integrated 2x20 Complex G7g29aa
Hp
Retail Integrated 2x20 Complex G7g29aa
Vendor
Hp
Product
Retail Integrated 2x20 Display G6u79aa
Hp
Retail Integrated 2x20 Display G6u79aa
Vendor
Hp
Product
Retail Rp7 Vfd Customer Display Qz701aa
Hp
Retail Rp7 Vfd Customer Display Qz701aa
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
