Vulnerabilities > HP

DATE CVE VULNERABILITY TITLE RISK
2022-12-12 CVE-2022-37018 Unspecified vulnerability in HP products
A potential vulnerability has been identified in the system BIOS for certain HP PC products which may allow escalation of privileges and code execution.
local
low complexity
hp
8.4
2022-12-12 CVE-2022-38395 Uncontrolled Search Path Element vulnerability in HP Fusion and Support Assistant
HP Support Assistant uses HP Performance Tune-up as a diagnostic tool.
local
low complexity
hp CWE-427
7.8
2022-12-12 CVE-2022-43780 Unspecified vulnerability in HP products
Certain HP ENVY, OfficeJet, and DeskJet printers may be vulnerable to a Denial of Service attack.
network
low complexity
hp
7.5
2022-11-22 CVE-2022-37931 Improper Authentication vulnerability in HP Nonstop Netbatch-Plus T9189H01/T9189L01
A vulnerability in NetBatch-Plus software allows unauthorized access to the application.  HPE has provided a workaround and fix.
local
low complexity
hp CWE-287
7.8
2022-09-26 CVE-2022-28721 Unspecified vulnerability in HP products
Certain HP Print Products are potentially vulnerable to Remote Code Execution.
network
low complexity
hp
critical
9.8
2022-09-26 CVE-2022-28722 Classic Buffer Overflow vulnerability in HP products
Certain HP Print Products are potentially vulnerable to Buffer Overflow.
network
low complexity
hp CWE-120
critical
9.8
2022-09-13 CVE-2022-1602 Unspecified vulnerability in HP Thinpro 7.2
A potential security vulnerability has been identified in HP ThinPro 7.2 Service Pack 8 (SP8).
local
low complexity
hp
5.5
2022-09-06 CVE-2022-23678 Unspecified vulnerability in HP Aruba Virtual Intranet Access
A vulnerability in the Aruba Virtual Intranet Access (VIA) client for Microsoft Windows operating system client communications that could allow for an attacker in a privileged network position to intercept sensitive information in Aruba Virtual Intranet Access (VIA) client for Microsoft Windows operating system versions: 4.3.0 build 2208101 and below.
network
high complexity
hp
5.9
2022-08-31 CVE-2022-28625 Information Exposure Through Log Files vulnerability in HP Oneview
A local disclosure of sensitive information vulnerability was discovered in HPE OneView version(s): Prior to 7.0 or 6.60.01.
local
low complexity
hp CWE-532
5.5
2022-05-17 CVE-2022-28616 Server-Side Request Forgery (SSRF) vulnerability in HP Oneview
A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0.
network
low complexity
hp CWE-918
critical
9.8