Hp
hp
2,335 CVEs • 17,248 products
Products (17,248)
Click to collapseToggle
Products (17,248)
Click to collapse
CVEs (2,335)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A privilege escalation exists in the updater for Plantronics Hub 3.25.1 and below. |
Certain HP software packages (SoftPaqs) are potentially vulnerable to arbitrary code execution when the SoftPaq configuration file has been modified after extraction. HP has released updated software packages (SoftPaqs). |
1Hp 6Poly Ccx 350 Poly Ccx 400Poly Ccx 500+3 moreJun 17, 2026 Apr 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 A vulnerability was discovered in the firmware builds after 8.0.2.3267 and prior to 8.1.3.1301 in CCX devices. A flaw in the firmware build process did not properly restrict access to a resource from an unauthorized acto...Show more |
1Hp 2826k67a Firmware 26k67b Firmware26k68a Firmware+25 moreJun 17, 2026 Mar 27, 2024 N/A· v4 6.3 MEDIUM· v3 N/A· v2 A user with administrative privileges can create a compromised dll file of the same name as the original dll within the HP printer’s Firmware Update Utility (FUU) bundle and place it in the Microsoft Windows default down...Show more |
1Hp 421kr42a Firmware 1kr45a Firmware1kr46a Firmware+39 moreJun 17, 2026 Mar 22, 2024 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Certain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when using an improper eSCL URL GET request. |
Certain HP DesignJet print products are potentially vulnerable to information disclosure related to accessing memory out-of-bounds when using the general-purpose gateway (GGW) over port 9220. |
1Hp 3Futuresmart 3 Futuresmart 4Futuresmart 5Jun 17, 2026 Feb 21, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Certain HP Enterprise LaserJet, and HP LaserJet Managed Printers are potentially vulnerable to information disclosure, when connections made by the device back to services enabled by some solutions may have been trusted...Show more |
1Hp 3Z440 Workstation Firmware Z640 Workstation FirmwareZ840 Workstation FirmwareJun 17, 2026 Feb 14, 2024 N/A· v4 7.9 HIGH· v3 N/A· v2 A potential security vulnerability has been identified in the system BIOS for certain HP Workstation PCs, which might allow escalation of privilege, arbitrary code execution, or denial of service. HP is releasing mitigat...Show more |
1Hp 27Elite Mini 600 G9 Firmware Elite Mini 800 G9 FirmwareElite Sff 600 G9 Firmware+24 moreJun 17, 2026 Feb 14, 2024 N/A· v4 6.4 MEDIUM· v3 N/A· v2 Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detection bypass via a physical attack. HP is releasing firmware and guidance...Show more |
1Hp 27Elite Mini 600 G9 Firmware Elite Mini 800 G9 FirmwareElite Sff 600 G9 Firmware+24 moreJun 17, 2026 Feb 14, 2024 N/A· v4 6.4 MEDIUM· v3 N/A· v2 Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detection bypass via a physical attack. HP is releasing firmware and guidance...Show more |
HPE OneView may have a missing passphrase during restore. |
HPE OneView may allow clusterService Authentication Bypass resulting in denial of service. |
HPE OneView may allow command injection with local privilege escalation. |
A potential security vulnerability has been identified with HP-UX System Management Homepage (SMH). This vulnerability could be exploited locally or remotely to disclose information.
|
1Hp 12Officejet Pro 8730 D9l19a Firmware Officejet Pro 8730 J7a28a FirmwareOfficejet Pro 8730 J7a29a Firmware+9 moreJun 17, 2026 Dec 14, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Certain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when sending a SOAP message to the service on TCP port 3911 that contains a body but no header. |
An authenticated Denial-of-Service (DoS) vulnerability exists in the CLI service. Successful exploitation of this vulnerability results in the ability to interrupt the normal
operation of the affected access point.
|
An authenticated vulnerability has been identified allowing an attacker to effectively establish highly privileged persistent arbitrary code execution across boot cycles.
|
Multiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on t...Show more |
An unauthenticated Denial-of-Service (DoS) vulnerability exists in the soft ap daemon accessed via the PAPI protocol. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation...Show more |
Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Wi-Fi Uplink service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities result in the ability to interrupt the normal ope...Show more |