Vulnerabilities > HP > High

DATE CVE VULNERABILITY TITLE RISK
2019-06-05 CVE-2018-7123 Improper Authentication vulnerability in HP Intelligent Management Center
A remote denial of service vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.
network
low complexity
hp CWE-287
7.5
2019-05-29 CVE-2019-6321 Improper Locking vulnerability in HP products
HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS code could be tampered with if the TPM is disabled.
network
low complexity
hp CWE-667
7.2
2019-05-10 CVE-2018-7119 Unspecified vulnerability in HP products
A Local Disclosure of Sensitive Information vulnerability was identified in HPE NonStop Safeguard earlier than version SPR T9750L01^AIC or T9750H05^AIH, and later versions when the PASSWORD-PROMPT configuration attribute is not set to BLIND; all versions on H-series.
local
high complexity
hp
7.0
2019-04-23 CVE-2019-2698 Vulnerability in the Java SE component of Oracle Java SE (subcomponent: 2D).
network
high complexity
oracle redhat debian opensuse canonical hp
8.1
2019-04-23 CVE-2019-2697 Vulnerability in the Java SE component of Oracle Java SE (subcomponent: 2D).
network
high complexity
oracle canonical redhat hp
8.1
2019-04-23 CVE-2019-2602 Resource Exhaustion vulnerability in multiple products
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries).
7.5
2019-04-09 CVE-2018-7118 Unspecified vulnerability in HP Service Pack for Proliant 2018.06.0
A local access restriction bypass vulnerability was identified in HPE Service Pack for ProLiant (SPP) Bundled Software earlier than version 2018.09.0.
local
low complexity
hp
7.8
2019-03-27 CVE-2017-2748 7PK - Security Features vulnerability in HP Isaac Mizrahi Smartwatch
A potential security vulnerability caused by the use of insecure (http) transactions during login has been identified with early versions of the Isaac Mizrahi Smartwatch mobile app.
network
low complexity
hp CWE-254
7.5
2019-03-27 CVE-2018-5927 Unspecified vulnerability in HP Support Assistant 8.1.40.3/8.7.50
HP Support Assistant before 8.7.50.3 allows an unauthorized person with local access to load arbitrary code.
local
low complexity
hp
7.3
2019-03-25 CVE-2019-3484 Unspecified vulnerability in HP Arcsight Logger
Mitigates a remote code execution issue in ArcSight Logger versions prior to 6.7.
local
low complexity
hp
7.8