Vulnerability index

Browse CVEs

1,743 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Futuresmart 3 CRITICAL 9.8
CVE-2025-26507

Certain HP LaserJet Pro, HP LaserJet Enterprise, and HP LaserJet Managed Printers may potentially be vulnerable to Remote Code Execution and Elevatio…

Fix: 2309118_002274 / 2309118_002275+
Fix from $2,300 2025-02-14
Futuresmart 3 CRITICAL 9.8
CVE-2025-26508

Certain HP LaserJet Pro, HP LaserJet Enterprise, and HP LaserJet Managed Printers may potentially be vulnerable to Remote Code Execution and Elevatio…

Fix: 6.17.5.34-202412122146 / 2309118_002274+
Fix from $2,300 2025-02-14
G3q78a Firmware MEDIUM 5.3
CVE-2025-1004

Certain HP LaserJet Pro printers may potentially experience a denial of service when a user sends a raw JPEG file to the printer via IPP (Internet Pr…

Fix: 2024-10-25+
Fix from $1,600 2025-02-06
Poly Tc8 Firmware HIGH 7.5
CVE-2024-9579

A potential vulnerability was discovered in certain Poly video conferencing devices. The firmware flaw does not properly sanitize user input. The exp…

Fix: 4.3.2 / 6.3.2+
Fix from $1,950 2024-11-05
Smart Universal Printing Driver CRITICAL 9.8
CVE-2024-9419

Client / Server PCs with the HP Smart Universal Printing Driver installed are potentially vulnerable to Remote Code Execution and/or Elevation of Pri…

Fix: 4.07.1.3204+
Fix from $2,300 2024-10-30
F9a29a Firmware HIGH 7.5
CVE-2024-5749

Certain HP DesignJet products may be vulnerable to credential reflection which allow viewing SMTP server credentials.

Fix: 001.2419b+
Fix from $1,950 2024-10-15
9yf88a Firmware MEDIUM 5.3
CVE-2024-9423

Certain HP LaserJet printers may potentially experience a denial of service when a user sends a raw JPEG file to the printer. The printer displays a …

Fix: 2024-08-13+
Fix from $1,600 2024-10-02
Security Manager CRITICAL 9.8
CVE-2024-7720

HP Security Manager is potentially vulnerable to Remote Code Execution as a result of code vulnerability within the product's solution open-source li…

No fix yet
Fix from $2,300 2024-08-27
Poly Clariti Manager CRITICAL 9.8
CVE-2024-41912

A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware flaw does not properly implement …

Fix: 10.12.0.2_100+
Fix from $2,300 2024-08-07
Instantos MEDIUM 5.3
CVE-2024-42396

Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed via the PAPI protocol. Succes…

Fix: 8.10.0.13 / 8.12.0.2+
Fix from $1,600 2024-08-06
Instantos MEDIUM 5.3
CVE-2024-42397

Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed via the PAPI protocol. Succes…

Fix: 8.10.0.13 / 8.12.0.2+
Fix from $1,600 2024-08-06
Poly Clariti Manager HIGH 8.8
CVE-2024-41913

A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware flaw does not properly sanitize …

Fix: 10.12.0.2_100+
Fix from $1,950 2024-08-06
Poly Clariti Manager MEDIUM 6.1
CVE-2024-41910

A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware contained multiple XSS vulnerabi…

Fix: 10.12.0.2_100+
Fix from $1,600 2024-08-06
Poly Clariti Manager MEDIUM 5.4
CVE-2024-41911

A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The flaw does not properly neutralize input du…

Fix: 10.12.0.2_100+
Fix from $1,600 2024-08-06
3par Service Processor Firmware CRITICAL 9.8
CVE-2024-22442

The vulnerability could be remotely exploited to bypass authentication.

Fix: 5.1.2.0+
Fix from $2,300 2024-07-16
Elitebook 745 G4 Firmware HIGH 7.8
CVE-2022-27540

A potential Time-of-Check to Time-of Use (TOCTOU) vulnerability has been identified in the HP BIOS for certain HP PC products, which might allow arbi…

Fix: 1.6 / 01.26.00+
Fix from $1,950 2024-06-28
Poly Plantronics Hub HIGH 7.8
CVE-2024-6147

Poly Plantronics Hub Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on aff…

Mitigation only
Fix from $1,950 2024-06-20
Elite Slice Firmware MEDIUM 6.8
CVE-2022-37019

Potential vulnerabilities have been identified in the system BIOS for certain HP PC products which may allow escalation of privileges and code execut…

Fix: 00.02.64 / 01.62+
Fix from $1,600 2024-06-10
Elite Slice Firmware MEDIUM 6.8
CVE-2022-37020

Potential vulnerabilities have been identified in the system BIOS for certain HP PC products, which might allow escalation of privileges and code exe…

Fix: 00.02.64 / 01.62+
Fix from $1,600 2024-06-10
W1a78a Firmware MEDIUM 6.8
CVE-2024-5143

A user with device administrative privileges can change existing SMTP server settings on the device, without having to re-enter SMTP server credentia…

Fix: 002_2413A+
Fix from $1,600 2024-05-23
Cz181a Firmware HIGH 7.6
CVE-2024-2301

Certain HP LaserJet Pro devices are potentially vulnerable to a Cross-Site Scripting (XSS) attack via the web management interface of the device.

Fix: 2023-03-30+
Fix from $1,950 2024-05-23
Poly Plantronics Hub MEDIUM 6.7
CVE-2024-27460

A privilege escalation exists in the updater for Plantronics Hub 3.25.1 and below.

Fix: after 3.25.1
Fix from $1,600 2024-05-14
Softpaqs HIGH 7.7
CVE-2024-28893

Certain HP software packages (SoftPaqs) are potentially vulnerable to arbitrary code execution when the SoftPaq configuration file has been modified …

Mitigation only
Fix from $1,950 2024-05-01
Poly Ccx 350 HIGH 8.8
CVE-2024-3281

A vulnerability was discovered in the firmware builds after 8.0.2.3267 and prior to 8.1.3.1301 in CCX devices. A flaw in the firmware build process d…

Fix: 8.1.3.1301 / 8.1.1301+
Fix from $1,950 2024-04-09
26k70b Firmware MEDIUM 6.3
CVE-2024-2209

A user with administrative privileges can create a compromised dll file of the same name as the original dll within the HP printer’s Firmware Update …

Fix: 2349c / 2349d+
Fix from $1,600 2024-03-27
1kr42a Firmware MEDIUM 5.3
CVE-2023-4063

Certain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when using an improper eSCL URL GET request.

Fix: 002.2349a+
Fix from $1,600 2024-03-22
Cq893c Firmware HIGH 7.5
CVE-2024-1869

Certain HP DesignJet print products are potentially vulnerable to information disclosure related to accessing memory out-of-bounds when using the gen…

Mitigation only
Fix from $1,950 2024-03-01
Futuresmart 4 MEDIUM 6.5
CVE-2024-0407

Certain HP Enterprise LaserJet, and HP LaserJet Managed Printers are potentially vulnerable to information disclosure, when connections made by the d…

Fix: 2309110_002016 / 2309110_002022+
Fix from $1,600 2024-02-21
Z440 Workstation Firmware HIGH 7.9
CVE-2023-6138

A potential security vulnerability has been identified in the system BIOS for certain HP Workstation PCs, which might allow escalation of privilege, …

Fix: 2.62+
Fix from $1,950 2024-02-14
Elite Mini 600 G9 Firmware MEDIUM 6.4
CVE-2022-48220

Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detecti…

Fix: 02.12.02+
Fix from $1,600 2024-02-14