Vulnerability index

Browse CVEs

1,743 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Integrated Lights Out Firmware MEDIUM 6.8
CVE-2023-28092

A potential security vulnerability has been identified in HPE ProLiant RL300 Gen11 Server. The vulnerability could result in the system being vulnera…

No fix yet
Fix from $1,600 2023-05-01
Laserjet Pro M304 M305 W1a46a Firmware CRITICAL 9.8
CVE-2023-27973

Certain HP LaserJet Pro print products are potentially vulnerable to Heap Overflow and/or Remote Code Execution.

Fix: 002_2310a+
Fix from $2,300 2023-04-28
Laserjet Pro M304 M305 W1a46a Firmware CRITICAL 9.8
CVE-2023-27971

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Elevation of Privilege.

Fix: 002_2310a+
Fix from $2,300 2023-04-28
Laserjet Pro M304 M305 W1a46a Firmware CRITICAL 9.8
CVE-2023-27972

Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Remote Code Execution.

Fix: 002_2310a+
Fix from $2,300 2023-04-28
Elite Dragonfly G3 Firmware MEDIUM 5.5
CVE-2022-31643

A potential security vulnerability has been identified in the system BIOS for certain HP PC products which may allow loss of integrity. HP is releasi…

Mitigation only
Fix from $1,600 2023-04-28
Oneview MEDIUM 5.5
CVE-2023-28084

HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens

Fix: 2.72 / 6.60.04+
Fix from $1,600 2023-04-25
Oneview HIGH 7.8
CVE-2023-28088

An HPE OneView appliance dump may expose SAN switch administrative credentials

Fix: 6.60.04 / 8.2+
Fix from $1,950 2023-04-25
Oneview HIGH 7.1
CVE-2023-28089

An HPE OneView appliance dump may expose FTP credentials for c7000 Interconnect Modules

Fix: 6.60.04 / 8.2+
Fix from $1,950 2023-04-25
Oneview MEDIUM 5.5
CVE-2023-28086

An HPE OneView appliance dump may expose proxy credential settings

Fix: 6.60.04 / 8.2+
Fix from $1,600 2023-04-25
Oneview MEDIUM 5.5
CVE-2023-28087

An HPE OneView appliance dump may expose OneView user accounts

Fix: 6.60.04 / 8.2+
Fix from $1,600 2023-04-25
Oneview MEDIUM 5.5
CVE-2023-28090

An HPE OneView appliance dump may expose SNMPv3 read credentials

Fix: 6.60.04 / 8.2+
Fix from $1,600 2023-04-25
Oneview MEDIUM 5.5
CVE-2023-28091

HPE OneView virtual appliance "Migrate server hardware" option may expose sensitive information in an HPE OneView support dump

Fix: after 8.1
Fix from $1,600 2023-04-14
Integrated Lights Out 4 MEDIUM 5.4
CVE-2023-28083

A remote Cross-site Scripting vulnerability was discovered in HPE Integrated Lights-Out 6 (iLO 6), Integrated Lights-Out 5 (iLO 5) and Integrated Lig…

Fix: 1.20 / 2.78+
Fix from $1,600 2023-03-22
Oneview For Vmware Vcenter MEDIUM 5.5
CVE-2022-37935

HPE OneView for VMware vCenter, in certain circumstances, may disclose the “HPE OneView” Username and Password.

Fix: after 11.2
Fix from $1,600 2023-03-01
348 G4 Firmware HIGH 7.0
CVE-2022-43779

A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS) w…

Fix: 00.02.40 / 02.02.40+
Fix from $1,950 2023-02-12
Deskjet 2540 A9u23b Firmware CRITICAL 9.0
CVE-2022-48311

**UNSUPPORTED WHEN ASSIGNED** Cross Site Scripting (XSS) in HP Deskjet 2540 series printer Firmware Version CEP1FN1418BR and Product Model Number A9U…

No fix yet
Fix from $2,300 2023-02-06
Support Assistant HIGH 7.8
CVE-2022-23455

Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of in…

Fix: 9.11+
Fix from $1,950 2023-02-01
Dragonfly Folio G3 2 In 1 Firmware HIGH 7.8
CVE-2022-27537

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation o…

No fix yet
Fix from $1,950 2023-02-01
Hpsfviewer HIGH 7.8
CVE-2022-3990

HPSFViewer might allow Escalation of Privilege. This potential vulnerability was remediated on July 29th, 2022. Customers who opted for automatic upd…

Fix: 8.6.3.1+
Fix from $1,950 2023-02-01
Dragonfly Folio G3 2 In 1 Firmware HIGH 7.0
CVE-2022-27538

A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the BIOS for certain HP PC products which may allow arbitrary …

Fix: 01.03.01 / 01.04.00+
Fix from $1,950 2023-02-01
Elite Dragonfly Firmware HIGH 7.8
CVE-2021-3808

Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code exec…

Mitigation only
Fix from $1,950 2023-02-01
Elite Dragonfly Firmware HIGH 7.8
CVE-2021-3809

Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code exec…

Mitigation only
Fix from $1,950 2023-02-01
Support Assistant HIGH 7.8
CVE-2022-23453

Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of in…

Fix: 9.11+
Fix from $1,950 2023-02-01
Support Assistant HIGH 7.8
CVE-2022-23454

Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of in…

Fix: 9.11+
Fix from $1,950 2023-02-01
340 G3 Firmware HIGH 7.8
CVE-2021-3439

HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these pote…

Fix: 01.04.01 / 01.09.00+
Fix from $1,950 2023-02-01
Security Manager HIGH 8.8
CVE-2022-46357

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat…

Fix: 3.9+
Fix from $1,950 2023-01-30
Security Manager HIGH 8.8
CVE-2022-46358

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat…

Fix: 3.9+
Fix from $1,950 2023-01-30
Security Manager HIGH 8.8
CVE-2022-46359

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat…

Fix: 3.9+
Fix from $1,950 2023-01-30
Security Manager HIGH 8.8
CVE-2022-46356

Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and informat…

Fix: 3.9+
Fix from $1,950 2023-01-30
Officeconnect 1820 24g Poe\+ \(185w\) Switch J9983a Firmware HIGH 7.5
CVE-2022-37934

A potential security vulnerability has been identified in HPE OfficeConnect 1820, and 1850 switch series. The vulnerability could be remotely exploit…

Mitigation only
Fix from $1,950 2023-01-05