Vulnerabilidades em HP Inc.

158 resultados
Análise Vexday

O portfólio de vulnerabilidades da HP Inc. reúne 143 CVEs catalogadas, com 15 classificadas como críticas e nenhuma atualmente confirmada em exploração ativa no catálogo CISA KEV — desempenho abaixo da média geral do catálogo. Ainda assim, a CVE-2017-2741 exige atenção prioritária: embora não esteja no KEV, seu índice EPSS de 0,8489 indica alta probabilidade de exploração, tornando-a o risco mais imediato a ser tratado. O tipo de falha mais recorrente é CWE-269 (gerenciamento impróprio de privilégios), o que sugere fragilidades em controles de acesso que, se exploradas em cadeia, podem elevar o impacto de vulnerabilidades menos severas individualmente. A presença de apenas uma CVE com PoC pública e quatro surgidas nos últimos 90 dias indica um volume recente moderado, mas o monitoramento contínuo permanece necessário dado o perfil de risco da falha mais crítica identificada.

CVE-2018-5921A potential security vulnerability has been identified with certain HP printers and MFPs in 2405129_000052 and other firmware versions. ThisEPSS 0.8%CVE-2026-91104CRITICALHP Linux Imaging and Printing (HPLIP) Software– Multiple VulnerabilitiesEPSS 0.7%CVE-2023-26294HIGHPrevious versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.EPSS 0.7%CVE-2026-91097HIGHHP Linux Imaging and Printing (HPLIP) Software– Multiple VulnerabilitiesEPSS 0.7%CVE-2026-91106CRITICALHP Linux Imaging and Printing (HPLIP) Software– Multiple VulnerabilitiesEPSS 0.7%CVE-2026-91105HIGHHP Linux Imaging and Printing (HPLIP) Software– Multiple VulnerabilitiesEPSS 0.7%CVE-2026-91098HIGHHP Linux Imaging and Printing (HPLIP) Software– Multiple VulnerabilitiesEPSS 0.7%CVE-2019-6332A potential security vulnerability has been identified with certain HP InkJet printers. The vulnerability could be exploited to allow cross-EPSS 0.7%CVE-2023-5365HP LIFE Android Mobile – Potential Escalation of Privilege, Information DisclosureEPSS 0.6%CVE-2019-18913A potential security vulnerability with pre-boot DMA may allow unauthorized UEFI code execution using open-case attacks. This industry-wide EPSS 0.6%CVE-2024-4143CRITICALCertain HP PC products using AMI BIOS – Buffer OverflowEPSS 0.6%CVE-2023-4063MEDIUMCertain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when using an improper eSCL URL GET request.EPSS 0.6%CVE-2024-9423MEDIUMCertain HP LaserJet Printers – Potential Denial of ServiceEPSS 0.6%CVE-2017-2740A potential security vulnerability has been identified with the command line shell of the HP ThinPro operating system 6.1, 5.2.1, 5.2, 5.1, EPSS 0.6%CVE-2019-6320Certain HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version EPSS 0.6%CVE-2019-6319HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version SWP1FN19EPSS 0.6%CVE-2017-2744The vulnerability allows attacker to extract binaries into protected file system locations in HP Support Assistant before 12.7.26.1.EPSS 0.5%CVE-2023-4499A potential security vulnerability has been identified in the HP ThinUpdate utility (also known as HP Recovery Image and Software Download TEPSS 0.5%CVE-2024-41913HIGHClariti Manager – Arbitrary File UploadEPSS 0.5%CVE-2024-41912CRITICALA vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware flaw does not properly iEPSS 0.5%