← Back

Hp

hp

2,335 CVEs • 17,248 products

Products (17,248)

Click to collapse
Toggle
Hp Ux
hp-ux
Instantos
instantos
Tru64
tru64
Loadrunner
loadrunner
Sitescope
sitescope
Openvms
openvms
Oneview
oneview

CVEs (2,335)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hp
89000
Color Laserjet MfpLaserjet 4100+5 more
Apr 29, 2026
Nov 17, 2010
N/A· v4
N/A· v3
7.8 HIGH· v2
The default configuration of the PJL Access value in the File System External Access settings on HP LaserJet MFP printers, Color LaserJet MFP printers, and LaserJet 4100, 4200, 4300, 5100, 8150, and 9000 printers enables...Show more
The default configuration of the PJL Access value in the File System External Access settings on HP LaserJet MFP printers, Color LaserJet MFP printers, and LaserJet 4100, 4200, 4300, 5100, 8150, and 9000 printers enables PJL commands that use the device's filesystem, which allows remote attackers to read arbitrary files via a command inside a print job, as demonstrated by a directory traversal attack.Show less
1Hp
1Insight Control For Linux
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability in HP Insight Control for Linux before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
1Hp
1Insight Orchestration
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
6.4 MEDIUM· v2
Unspecified vulnerability in HP Insight Orchestration before 6.2 allows remote attackers to bypass intended access restrictions, and obtain sensitive information or modify data, via unknown vectors.
1Hp
1Insight Orchestration
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in HP Insight Orchestration before 6.2 allows remote attackers to read arbitrary files via unknown vectors.
1Hp
1Insight Managed System Setup Wizard
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in HP Insight Managed System Setup Wizard before 6.2 allows remote attackers to read arbitrary files via unknown vectors.
1Hp
1Insight Recovery
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in HP Insight Recovery before 6.2 allows remote attackers to read arbitrary files via unknown vectors.
1Hp
1Insight Recovery
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in HP Insight Recovery before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Hp
1Insight Control Performance Management
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in HP Insight Control Performance Management before 6.1 update 2 allows remote attackers to read arbitrary files via unknown vectors.
1Hp
1Insight Control Performance Management
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability in HP Insight Control Performance Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
1Hp
1Insight Control Performance Management
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
8.0 HIGH· v2
Unspecified vulnerability in HP Insight Control Performance Management before 6.2 allows remote authenticated users to gain privileges via unknown vectors.
1Hp
1Insight Control Performance Management
Apr 29, 2026
Nov 2, 2010
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in HP Insight Control Performance Management before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Hp
1Storage Essentials
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in HP Storage Essentials before 6.3.0, when LDAP authentication is enabled, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors...Show more
Unspecified vulnerability in HP Storage Essentials before 6.3.0, when LDAP authentication is enabled, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.Show less
1Hp
2Loadrunner
Loadrunner Web Tours
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in LoadRunner Web Tours 9.10 in HP LoadRunner 9.1 and earlier allows remote attackers to cause a denial of service, and possibly obtain sensitive information or modify data, via unknown vectors.
1Hp
1Palm Webos
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
5.6 MEDIUM· v2
Unspecified vulnerability in the camera application in HP Palm webOS 1.4.1 allows local users to overwrite arbitrary files via unknown vectors.
1Hp
1Palm Webos
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
6.2 MEDIUM· v2
Unspecified vulnerability in the service API in HP Palm webOS 1.4.1 allows local users to gain privileges by leveraging the ability to perform certain service calls.
1Hp
1Palm Webos
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
9.3 HIGH· v2
Unspecified vulnerability in Doc Viewer in HP Palm webOS 1.4.1 allows remote attackers to execute arbitrary code via a crafted document, as demonstrated by a Word document.
1Hp
1Insight Control Power Management
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability in HP Insight Control Power Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
1Hp
1Insight Control Power Management
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in HP Insight Control Power Management before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Hp
2Hp
Version Control Repository Manager
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in HP Version Control Repository Manager (VCRM) before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Hp
2Insight Control Server Migration
Insight Control Server Migration6.0.1
Apr 29, 2026
Oct 28, 2010
N/A· v4
N/A· v3
6.4 MEDIUM· v2
Unspecified vulnerability in HP Insight Control Server Migration before 6.2 allows remote attackers to obtain sensitive information or modify data via unknown vectors.