Vulnerabilities > HP > Engage Flex Mini Retail System Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-06-14 CVE-2022-31644 Unspecified vulnerability in HP products
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
low complexity
hp
7.8
2023-06-14 CVE-2022-31645 Unspecified vulnerability in HP products
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
low complexity
hp
7.8
2023-06-14 CVE-2022-31646 Unspecified vulnerability in HP products
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
low complexity
hp
7.8
2023-06-14 CVE-2022-31640 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.0
2023-06-14 CVE-2022-31641 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.0
2023-06-14 CVE-2022-31642 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.0
2023-02-01 CVE-2022-27537 Unspecified vulnerability in HP products
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
low complexity
hp
7.8
2022-02-16 CVE-2021-39297 Unspecified vulnerability in HP products
Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which may allow escalation of privilege and arbitrary code execution.
local
low complexity
hp
8.8
2022-02-16 CVE-2021-39298 Unspecified vulnerability in HP products
A potential vulnerability in AMD System Management Mode (SMM) interrupt handler may allow an attacker with high privileges to access the SMM resulting in arbitrary code execution which could be used by malicious actors to bypass security mechanisms provided in the UEFI firmware.
local
low complexity
hp
8.8
2022-02-16 CVE-2021-39299 Unspecified vulnerability in HP products
Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which may allow escalation of privilege and arbitrary code execution.
local
low complexity
hp
8.8