Vulnerabilities > HP > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-04-28 CVE-2023-27971 Classic Buffer Overflow vulnerability in HP products
Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Elevation of Privilege.
network
low complexity
hp CWE-120
critical
9.8
2023-04-28 CVE-2023-27972 Classic Buffer Overflow vulnerability in HP products
Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Remote Code Execution.
network
low complexity
hp CWE-120
critical
9.8
2023-02-06 CVE-2022-48311 Cross-site Scripting vulnerability in HP Deskjet 2540 A9U23B Firmware Cep1Fn1418Br
**UNSUPPORTED WHEN ASSIGNED** Cross Site Scripting (XSS) in HP Deskjet 2540 series printer Firmware Version CEP1FN1418BR and Product Model Number A9U23B allows authenticated attacker to inject their own script into the page via HTTP configuration page.
network
low complexity
hp CWE-79
critical
9.0
2022-12-12 CVE-2021-3437 Unspecified vulnerability in HP Omen Gaming HUB and Omen Gaming HUB SDK
Potential security vulnerabilities have been identified in an OMEN Gaming Hub SDK package which may allow escalation of privilege and/or denial of service.
network
low complexity
hp
critical
9.8
2022-12-12 CVE-2021-3821 Unspecified vulnerability in HP Futuresmart 5
A potential security vulnerability has been identified for certain HP multifunction printers (MFPs).
network
low complexity
hp
critical
9.8
2022-12-12 CVE-2021-3919 Unspecified vulnerability in HP Command Center and Omen Gaming HUB
A potential security vulnerability has been identified in OMEN Gaming Hub and in HP Command Center which may allow escalation of privilege and/or denial of service.
network
low complexity
hp
critical
9.8
2022-12-12 CVE-2021-3942 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HP products
Certain HP Print products and Digital Sending products may be vulnerable to potential remote code execution and buffer overflow with use of Link-Local Multicast Name Resolution or LLMNR.
network
low complexity
hp CWE-119
critical
9.8
2022-09-26 CVE-2022-28721 Unspecified vulnerability in HP products
Certain HP Print Products are potentially vulnerable to Remote Code Execution.
network
low complexity
hp
critical
9.8
2022-09-26 CVE-2022-28722 Classic Buffer Overflow vulnerability in HP products
Certain HP Print Products are potentially vulnerable to Buffer Overflow.
network
low complexity
hp CWE-120
critical
9.8
2022-05-17 CVE-2022-28616 Server-Side Request Forgery (SSRF) vulnerability in HP Oneview
A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0.
network
low complexity
hp CWE-918
critical
9.8