Vulnerabilidades em HP Inc.

158 resultados
Análise Vexday

O portfólio de vulnerabilidades da HP Inc. reúne 143 CVEs catalogadas, com 15 classificadas como críticas e nenhuma atualmente confirmada em exploração ativa no catálogo CISA KEV — desempenho abaixo da média geral do catálogo. Ainda assim, a CVE-2017-2741 exige atenção prioritária: embora não esteja no KEV, seu índice EPSS de 0,8489 indica alta probabilidade de exploração, tornando-a o risco mais imediato a ser tratado. O tipo de falha mais recorrente é CWE-269 (gerenciamento impróprio de privilégios), o que sugere fragilidades em controles de acesso que, se exploradas em cadeia, podem elevar o impacto de vulnerabilidades menos severas individualmente. A presença de apenas uma CVE com PoC pública e quatro surgidas nos últimos 90 dias indica um volume recente moderado, mas o monitoramento contínuo permanece necessário dado o perfil de risco da falha mais crítica identificada.

CVE-2022-37020MEDIUMHP PC BIOS May 2024 Security Updates for Potential Stack Buffer OverflowsEPSS 0.2%CVE-2021-3439HIGHHP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate tEPSS 0.2%CVE-2024-2300MEDIUMHP Advance Mobile Application – Potential Information DisclosureEPSS 0.2%CVE-2025-11998MEDIUMHP Card Readers (B Models) – Potential Information DisclosureEPSS 0.2%CVE-2022-3990HIGHHPSFViewer might allow Escalation of Privilege. This potential vulnerability was remediated on July 29th, 2022. Customers who opted for autoEPSS 0.2%CVE-2023-5671HP Print and Scan Doctor for Windows may potentially be vulnerable to escalation of privilege. HP is releasing software updates to mitigate EPSS 0.2%CVE-2023-5739HIGHCertain versions of HP PC Hardware Diagnostics Windows are potentially vulnerable to elevation of privilege.EPSS 0.2%CVE-2024-5477HIGHA potential security vulnerability has been identified in the System BIOS for some HP PC products which may allow escalation of privilege, aEPSS 0.2%CVE-2022-31641HIGHPotential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escEPSS 0.2%CVE-2022-37019MEDIUMHP PC BIOS May 2024 Security Updates for Potential Stack Buffer OverflowsEPSS 0.2%CVE-2022-31640HIGHPotential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escEPSS 0.2%CVE-2023-5449A potential security vulnerability has been identified in certain HP Displays supporting the Theft Deterrence feature which may allow a moniEPSS 0.2%CVE-2025-43483MEDIUMPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.2%CVE-2025-43021MEDIUMPoly Clariti Manager - Multiple Security VulnerabilitiesEPSS 0.2%CVE-2024-1695MEDIUMA potential security vulnerability has been identified in the HP Application Enabling Software Driver for certain HP PC products, which mighEPSS 0.2%CVE-2024-5760HIGHThe Samsung Universal Print Driver for Windows is potentially vulnerable to escalation of privilege allowing the creation of a reverse shellEPSS 0.1%CVE-2026-8864HIGHHP Fan Control App – Potential Escalation of PrivilegeEPSS 0.1%CVE-2022-31638HIGHPotential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allEPSS 0.1%CVE-2022-43777HIGHPotential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allEPSS 0.1%CVE-2022-31639HIGHPotential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allEPSS 0.1%