Vulnerabilities in HP Inc.

158 results
Vexday analysis

O portfólio de vulnerabilidades da HP Inc. reúne 143 CVEs catalogadas, com 15 classificadas como críticas e nenhuma atualmente confirmada em exploração ativa no catálogo CISA KEV — desempenho abaixo da média geral do catálogo. Ainda assim, a CVE-2017-2741 exige atenção prioritária: embora não esteja no KEV, seu índice EPSS de 0,8489 indica alta probabilidade de exploração, tornando-a o risco mais imediato a ser tratado. O tipo de falha mais recorrente é CWE-269 (gerenciamento impróprio de privilégios), o que sugere fragilidades em controles de acesso que, se exploradas em cadeia, podem elevar o impacto de vulnerabilidades menos severas individualmente. A presença de apenas uma CVE com PoC pública e quatro surgidas nos últimos 90 dias indica um volume recente moderado, mas o monitoramento contínuo permanece necessário dado o perfil de risco da falha mais crítica identificada.

CVE-2017-2745—Potential security vulnerabilities have been identified with HP JetAdvantage Security Manager before 3.0.1. The vulnerabilities could potentEPSS 0.9%CVE-2023-27971CRITICALCertain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Elevation of Privilege.EPSS 0.9%CVE-2023-32674CRITICALCertain versions of HP PC Hardware Diagnostics Windows are potentially vulnerable to buffer overflow.EPSS 0.9%CVE-2023-32673CRITICALCertain versions of HP PC Hardware Diagnostics Windows, HP Image Assistant, and HP Thunderbolt Dock G2 Firmware are potentially vulnerable tEPSS 0.9%CVE-2023-1707HIGHCertain HP Enterprise LaserJet and HP LaserJet Managed Printers are potentially vulnerable to information disclosure when IPsec is enabled wEPSS 0.9%CVE-2023-4694—Certain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when sending a SOAP message to the service on TCP port 3EPSS 0.8%CVE-2023-26301—Certain HP LaserJet Pro print products are potentially vulnerable to an Elevation of Privilege and/or Information Disclosure related to a laEPSS 0.8%CVE-2021-3919CRITICALA potential security vulnerability has been identified in OMEN Gaming Hub and in HP Command Center which may allow escalation of privilege aEPSS 0.8%CVE-2018-5921—A potential security vulnerability has been identified with certain HP printers and MFPs in 2405129_000052 and other firmware versions. ThisEPSS 0.7%CVE-2026-91102HIGHHP Linux Imaging and Printing (HPLIP) Software– Multiple VulnerabilitiesEPSS 0.7%CVE-2026-91100MEDIUMHP Linux Imaging and Printing (HPLIP) Software– Multiple VulnerabilitiesEPSS 0.7%CVE-2023-26294HIGHPrevious versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.EPSS 0.7%CVE-2019-6332—A potential security vulnerability has been identified with certain HP InkJet printers. The vulnerability could be exploited to allow cross-EPSS 0.7%CVE-2023-5365—HP LIFE Android Mobile – Potential Escalation of Privilege, Information DisclosureEPSS 0.6%CVE-2019-18913—A potential security vulnerability with pre-boot DMA may allow unauthorized UEFI code execution using open-case attacks. This industry-wide EPSS 0.6%CVE-2024-4143CRITICALCertain HP PC products using AMI BIOS – Buffer OverflowEPSS 0.6%CVE-2024-9423MEDIUMCertain HP LaserJet Printers – Potential Denial of ServiceEPSS 0.6%CVE-2023-4063MEDIUMCertain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when using an improper eSCL URL GET request.EPSS 0.6%CVE-2019-6320—Certain HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version EPSS 0.6%CVE-2019-6319—HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version SWP1FN19EPSS 0.6%