---
id: CVE-2026-89082
title: >-
  HP has identified potential security vulnerabilities in the HP Advance
  software that may enable elevation of privilege, remote code execution, or
  arbitrary file write under certain conditions, impacting the HP Advance server
  hosting the …
summary: >-
  HP has identified potential security vulnerabilities in the HP Advance
  software that may enable elevation of privilege, remote code execution, or
  arbitrary file write under certain conditions, impacting the HP Advance server
  hosting the …
severity: critical
cvss: 9.3
cvssVector: 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'
cwe:
  - CWE-94
vendor: HP Inc
product: HP AC Print & Scan
affected:
  - hp_ac_print_scan < <V1R4.0.027
  - hp_output_central < <V1R4.0.029
published: '2026-09-16'
updated: '2026-09-18'
sourceUpdated: '2026-09-18T19:34:36.657'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-89082'
references:
  - url: 'https://support.hp.com/us-en/document/ish_15646496-15646518-16/hpsbpi04149'
    label: hp-security-alert@hp.com
tags:
  - nvd
  - cve.org
epss: 0.00506
epssPercentile: 0.42098
ssvc:
  exploitation: none
  automatable: 'yes'
  technicalImpact: total
  timestamp: '2026-09-17T16:07:50.103471Z'
cvssSource: cna
ingestedAt: '2026-09-16T20:03:30.760Z'
---

## Overview

HP has identified potential security vulnerabilities in the HP Advance software that may enable elevation of privilege, remote code execution, or arbitrary file write under certain conditions, impacting the HP Advance server hosting the software.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
