Vulnerability index

Browse CVEs

1,743 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Color Laserjet Cm4540 Mfp Firmware HIGH 8.8
CVE-2020-28419

During installation with certain driver software or application packages an arbitrary code execution could occur.

Fix: 10.0.16007.5 / 11.0.19232.882+
Fix from $1,950 2021-11-09
Pagewide Pro 577z K9z76a Firmware CRITICAL 9.1
CVE-2019-16240

A Buffer Overflow and Information Disclosure issue exists in HP OfficeJet Pro Printers before 001.1937C, and HP PageWide Managed Printers and HP Page…

Fix: 001.1937d+
Fix from $2,300 2021-11-09
Futuresmart 4 HIGH 7.8
CVE-2019-18912

A potential security vulnerability has been identified for certain HP printers and MFPs with Troy solutions. For affected printers with FutureSmart F…

Fix: 2409065_000054 / 2409065_000063+
Fix from $1,950 2021-11-09
Futuresmart 3 MEDIUM 6.1
CVE-2019-18914

A potential security vulnerability has been identified for certain HP printers and MFPs that would allow redirection page Cross-Site Scripting in a c…

Fix: 2309025_582081 / 2309025_582084+
Fix from $1,600 2021-11-09
Color Laserjet Pro Mfp M277 B3q11a Firmware HIGH 7.8
CVE-2019-18916

A potential security vulnerability has been identified for HP LaserJet Solution Software (for certain HP LaserJet Printers) which may lead to unautho…

No fix yet
Fix from $1,950 2021-11-09
Officejet 4650 E6g87a Firmware HIGH 7.8
CVE-2020-28416

HP has identified a security vulnerability with the I.R.I.S. OCR (Optical Character Recognition) software available with HP PageWide and OfficeJet pr…

Fix: 40.11.1122+
Fix from $1,950 2021-11-03
Print And Scan Doctor HIGH 7.8
CVE-2020-6931

HP Print and Scan Doctor may potentially be vulnerable to local elevation of privilege.

Fix: 5.51+
Fix from $1,950 2021-11-03
Futuresmart 3 CRITICAL 9.8
CVE-2021-39238EPSS 12%

Certain HP Enterprise LaserJet, HP LaserJet Managed, HP Enterprise PageWide, HP PageWide Managed products may be vulnerable to potential buffer overf…

Fix: 3.9.8 / 4.11.2.1+
Fix from $2,300 2021-11-03
Ilo Amplifier Pack CRITICAL 9.8
CVE-2021-29212EPSS 13%

A remote unauthenticated directory traversal security vulnerability has been identified in HPE iLO Amplifier Pack versions 1.80, 1.81, 1.90 and 1.95.…

Mitigation only
Fix from $2,300 2021-11-01
Laserjet Pro J8h61a Firmware CRITICAL 9.8
CVE-2021-3705

Potential security vulnerabilities have been discovered on a certain HP LaserJet Pro printer that may allow an unauthorized user to reconfigure, rese…

Mitigation only
Fix from $2,300 2021-11-01
Hp Smart HIGH 7.8
CVE-2021-3440

HP Print and Scan Doctor, an application within the HP Smart App for Windows, is potentially vulnerable to local elevation of privilege.

Fix: 128.1.217+
Fix from $1,950 2021-11-01
Laserjet Pro J8h60a Firmware HIGH 7.5
CVE-2021-3704

Potential security vulnerabilities have been discovered on a certain HP LaserJet Pro printer that may allow a Denial of Service on the device.

No fix yet
Fix from $1,950 2021-11-01
Futuresmart 4 MEDIUM 5.4
CVE-2021-3662

Certain HP Enterprise LaserJet and PageWide MFPs may be vulnerable to stored cross site scripting (XSS).

Fix: 4.11.2.1 / 5.3+
Fix from $1,600 2021-10-29
Edgeline Infrastructure Management HIGH 7.5
CVE-2021-26586

A potential security vulnerability has been identified in the HPE Edgeline Infrastructure Manager, also known as HPE Edgeline Infrastructure Manageme…

Fix: 1.24+
Fix from $1,950 2021-08-05
Oneview For Vmware Vcenter MEDIUM 6.1
CVE-2021-26584

A security vulnerability in HPE OneView for VMware vCenter (OV4VC) could be exploited remotely to allow Cross-Site Scripting. HPE has released the fo…

Fix: 10.2+
Fix from $1,600 2021-06-03
Integrated Lights Out 4 MEDIUM 6.7
CVE-2021-29202

A local buffer overflow vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrated Lights-Out 5 (iL…

Fix: 2.44 / 2.78+
Fix from $1,600 2021-05-25
Color Laser 150 4zb94a HIGH 7.8
CVE-2021-3438

A potential buffer overflow in the software drivers for certain HP LaserJet products and Samsung product printers could lead to an escalation of priv…

Mitigation only
Fix from $1,950 2021-05-20
Ilo Amplifier Pack CRITICAL 9.8
CVE-2021-26583

A potential security vulnerability was identified in HPE iLO Amplifier Pack. The vulnerabilities could be remotely exploited to allow remote code exe…

Fix: 1.90+
Fix from $2,300 2021-05-10
Edgeline Infrastructure Manager CRITICAL 9.8
CVE-2021-29203EPSS 68%

A security vulnerability has been identified in the HPE Edgeline Infrastructure Manager, also known as HPE Edgeline Infrastructure Management Softwar…

Fix: 1.22+
Fix from $2,300 2021-05-06
Icewall Sso Dgfw MEDIUM 6.1
CVE-2021-26582

A security vulnerability in HPE IceWall SSO Domain Gateway Option (Dgfw) module version 10.0 on RHEL 5/6/7, version 10.0 on HP-UX 11i v3, version 10.…

Mitigation only
Fix from $1,600 2021-04-15
Moonshot Provisioning Manager CRITICAL 9.8
CVE-2021-25139EPSS 8%

A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20. The HPE Moonshot Provisioning Manager is an ap…

Mitigation only
Fix from $2,300 2021-02-09
Moonshot Provisioning Manager CRITICAL 9.8
CVE-2021-25140EPSS 12%

A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20. The HPE Moonshot Provisioning Manager is an ap…

Mitigation only
Fix from $2,300 2021-02-09
Integrated Lights Out 4 MEDIUM 5.3
CVE-2020-7202

A potential security vulnerability has been identified in HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 4 (iLO 4) firmware. The vulne…

Fix: 2.31 / 2.76+
Fix from $1,600 2021-01-05
Systems Insight Manager CRITICAL 9.8
CVE-2020-7200EPSS 82%

A potential security vulnerability has been identified in HPE Systems Insight Manager (SIM) version 7.6. The vulnerability could be exploited to allo…

No fix yet
Fix from $2,300 2020-12-18
Ilo Amplifier Pack CRITICAL 9.8
CVE-2020-7203

A potential security vulnerability has been identified in HPE iLO Amplifier Pack server version 1.70. The vulnerability could be exploited to allow r…

Mitigation only
Fix from $2,300 2020-12-18
Storeever Msl2024 Firmware HIGH 8.8
CVE-2020-7201

A potential security vulnerability has been identified in the HPE StoreEver MSL2024 Tape Library and HPE StoreEver 1/8 G2 Tape Autoloaders. The vulne…

Fix: 5.40 / 7.30+
Fix from $1,950 2020-12-18
Edgeline Infrastructure Manager CRITICAL 9.8
CVE-2020-7199EPSS 9%

A security vulnerability has been identified in the HPE Edgeline Infrastructure Manager, also known as HPE Edgeline Infrastructure Management Softwar…

Fix: 1.21+
Fix from $2,300 2020-12-02
Oneview HIGH 8.8
CVE-2020-7198

There is a remote escalation of privilege possible for a malicious user that has a OneView account in OneView and Synergy Composer. HPE has provided …

Mitigation only
Fix from $1,950 2020-11-06
Apollo 2000 Firmware MEDIUM 6.8
CVE-2020-7207

A local elevation of privilege using physical access security vulnerability was found in HPE Proliant Gen10 Servers using Intel Innovation Engine (IE…

Mitigation only
Fix from $1,600 2020-11-05
Storeserv Management Console CRITICAL 9.8
CVE-2020-7197

SSMC3.7.0.0 is vulnerable to remote authentication bypass. HPE StoreServ Management Console (SSMC) 3.7.0.0 is an off node multiarray manager web appl…

Fix: 3.7.1.1+
Fix from $2,300 2020-10-26