Vulnerabilidades em HP Inc.

158 resultados
Análise Vexday

O portfólio de vulnerabilidades da HP Inc. reúne 143 CVEs catalogadas, com 15 classificadas como críticas e nenhuma atualmente confirmada em exploração ativa no catálogo CISA KEV — desempenho abaixo da média geral do catálogo. Ainda assim, a CVE-2017-2741 exige atenção prioritária: embora não esteja no KEV, seu índice EPSS de 0,8489 indica alta probabilidade de exploração, tornando-a o risco mais imediato a ser tratado. O tipo de falha mais recorrente é CWE-269 (gerenciamento impróprio de privilégios), o que sugere fragilidades em controles de acesso que, se exploradas em cadeia, podem elevar o impacto de vulnerabilidades menos severas individualmente. A presença de apenas uma CVE com PoC pública e quatro surgidas nos últimos 90 dias indica um volume recente moderado, mas o monitoramento contínuo permanece necessário dado o perfil de risco da falha mais crítica identificada.

CVE-2026-12553HIGHHP Web Jetadmin (WJA) - Potential Arbitrary File Read/WriteEPSS 0.3%CVE-2024-2301HIGHCertain HP LaserJet Pro devices are potentially vulnerable to a Cross-Site Scripting (XSS) attack via the web management interface of the deEPSS 0.3%CVE-2023-5409HP is aware of a potential security vulnerability in HP t430 and t638 Thin Client PCs. These models may be susceptible to a physical attack,EPSS 0.3%CVE-2025-43025MEDIUMHP Universal Print Driver – Potential Denial of ServiceEPSS 0.3%CVE-2019-16283HIGHA potential security vulnerability has been identified with a version of the HP Softpaq installer that can lead to arbitrary code execution.EPSS 0.3%CVE-2024-28893HIGHCertain HP software packages (SoftPaqs) are potentially vulnerable to arbitrary code execution when the SoftPaq configuration file has been EPSS 0.3%CVE-2022-48220MEDIUMPotential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusioEPSS 0.3%CVE-2024-41910MEDIUMA vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware contained multiple XSS EPSS 0.3%CVE-2022-48219MEDIUMPotential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusioEPSS 0.3%CVE-2024-41911MEDIUMA vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The flaw does not properly neutralizeEPSS 0.3%CVE-2025-43020MEDIUMPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.3%CVE-2025-43489LOWPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.3%CVE-2025-43017HIGHHP ThinPro 8.1 SP8 Security UpdatesEPSS 0.3%CVE-2021-3809HIGHPotential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary EPSS 0.2%CVE-2021-3808HIGHPotential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary EPSS 0.2%CVE-2022-37018HIGHA potential vulnerability has been identified in the system BIOS for certain HP PC products which may allow escalation of privileges and codEPSS 0.2%CVE-2022-31646HIGHPotential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escEPSS 0.2%CVE-2022-31644HIGHPotential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escEPSS 0.2%CVE-2025-43487MEDIUMPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.2%CVE-2022-4894Certain HP and Samsung Printer software packages may potentially be vulnerable to elevation of privilege due to Uncontrolled Search Path EleEPSS 0.2%