Vulnerabilities > HP > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-13 CVE-2022-31637 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.8
2023-06-13 CVE-2022-31638 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.8
2023-06-13 CVE-2022-31639 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.8
2023-06-12 CVE-2023-26294 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
local
low complexity
hp CWE-77
7.8
2023-06-12 CVE-2023-26296 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2023-26297 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2023-26298 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2022-43777 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.8
2023-06-12 CVE-2022-43778 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.8
2023-06-12 CVE-2022-27539 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in HP products
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
local
high complexity
hp CWE-367
7.8