Vulnerabilidades em HP Inc.

158 resultados
Análise Vexday

O portfólio de vulnerabilidades da HP Inc. reúne 143 CVEs catalogadas, com 15 classificadas como críticas e nenhuma atualmente confirmada em exploração ativa no catálogo CISA KEV — desempenho abaixo da média geral do catálogo. Ainda assim, a CVE-2017-2741 exige atenção prioritária: embora não esteja no KEV, seu índice EPSS de 0,8489 indica alta probabilidade de exploração, tornando-a o risco mais imediato a ser tratado. O tipo de falha mais recorrente é CWE-269 (gerenciamento impróprio de privilégios), o que sugere fragilidades em controles de acesso que, se exploradas em cadeia, podem elevar o impacto de vulnerabilidades menos severas individualmente. A presença de apenas uma CVE com PoC pública e quatro surgidas nos últimos 90 dias indica um volume recente moderado, mas o monitoramento contínuo permanece necessário dado o perfil de risco da falha mais crítica identificada.

CVE-2022-31645HIGHPotential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escEPSS 0.2%CVE-2026-5923MEDIUMPoly Voice – Potential Unauthorized Modification of WebUI using CSRF AttackEPSS 0.2%CVE-2022-43778HIGHPotential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allEPSS 0.2%CVE-2025-43488LOWPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.2%CVE-2023-6138HIGHA potential security vulnerability has been identified in the system BIOS for certain HP Workstation PCs, which might allow escalation of prEPSS 0.2%CVE-2022-46358HIGHPotential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, andEPSS 0.2%CVE-2022-46359HIGHPotential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, andEPSS 0.2%CVE-2022-1038HIGHA potential security vulnerability has been identified in the HP Jumpstart software, which might allow escalation of privilege. HP is recommEPSS 0.2%CVE-2022-46356HIGHPotential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, andEPSS 0.2%CVE-2022-46357HIGHPotential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, andEPSS 0.2%CVE-2025-43486MEDIUMPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.2%CVE-2022-23454HIGHPotential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromEPSS 0.2%CVE-2025-43484MEDIUMPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.2%CVE-2022-23455HIGHPotential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromEPSS 0.2%CVE-2022-23453HIGHPotential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromEPSS 0.2%CVE-2023-26300A potential security vulnerability has been identified in the system BIOS for certain HP PC products which might allow escalation of privileEPSS 0.2%CVE-2022-31643MEDIUMA potential security vulnerability has been identified in the system BIOS for certain HP PC products which may allow loss of integrity. HP iEPSS 0.2%CVE-2024-1174HIGHPrevious versions of HP ThinPro (prior to HP ThinPro 8.0 SP 8) could potentially contain security vulnerabilities. HP has released HP ThinPrEPSS 0.2%CVE-2025-43485MEDIUMPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.2%CVE-2023-5410HIGHA potential security vulnerability has been reported in the system BIOS of certain HP PC products, which might allow memory tampering. HP isEPSS 0.2%