Vulnerabilities > HP

DATE CVE VULNERABILITY TITLE RISK
2019-04-23 CVE-2019-2697 Vulnerability in the Java SE component of Oracle Java SE (subcomponent: 2D).
network
high complexity
oracle canonical redhat hp
8.1
2019-04-23 CVE-2019-2684 Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI).
network
high complexity
oracle redhat opensuse debian apache canonical hp
5.9
2019-04-23 CVE-2019-2602 Resource Exhaustion vulnerability in multiple products
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries).
7.5
2019-04-11 CVE-2019-6318 Improper Verification of Cryptographic Signature vulnerability in HP products
HP LaserJet Enterprise printers, HP PageWide Enterprise printers, HP LaserJet Managed printers, HP Officejet Enterprise printers have an insufficient solution bundle signature validation that potentially allows execution of arbitrary code.
network
low complexity
hp CWE-347
critical
9.8
2019-04-09 CVE-2018-7118 Unspecified vulnerability in HP Service Pack for Proliant 2018.06.0
A local access restriction bypass vulnerability was identified in HPE Service Pack for ProLiant (SPP) Bundled Software earlier than version 2018.09.0.
local
low complexity
hp
7.8
2019-04-09 CVE-2018-7117 Cross-site Scripting vulnerability in HP Integrated Lights-Out 5 Firmware 1.30/1.37
A remote Cross-Site Scripting in HPE iLO 5 Web User Interface vulnerability was identified in HPE Integrated Lights-Out 5 (iLO 5) for Gen10 ProLiant Servers earlier than version v1.40.
network
low complexity
hp CWE-79
6.1
2019-03-27 CVE-2017-2752 7PK - Security Features vulnerability in HP Tommy Hilfiger Th24/7
A potential security vulnerability caused by incomplete obfuscation of application configuration information was discovered in Tommy Hilfiger TH24/7 Android app versions 2.0.0.11, 2.0.1.14, 2.1.0.16, and 2.2.0.19.
low complexity
hp CWE-254
2.1
2019-03-27 CVE-2017-2748 7PK - Security Features vulnerability in HP Isaac Mizrahi Smartwatch
A potential security vulnerability caused by the use of insecure (http) transactions during login has been identified with early versions of the Isaac Mizrahi Smartwatch mobile app.
network
low complexity
hp CWE-254
7.5
2019-03-27 CVE-2018-5927 Unspecified vulnerability in HP Support Assistant 8.1.40.3/8.7.50
HP Support Assistant before 8.7.50.3 allows an unauthorized person with local access to load arbitrary code.
local
low complexity
hp
7.3
2019-03-27 CVE-2018-5926 Improper Certificate Validation vulnerability in HP Remote Graphics Software 7.5.0
A potential vulnerability has been identified in HP Remote Graphics Software’s certificate authentication process version 7.5.0 and earlier.
network
low complexity
hp CWE-295
critical
9.1