CVE-2022-48219Protection Mechanism Failure in HP Elite Mini 600 G9 Firmware

Severity
6.4MEDIUMNVD
EPSS
0.1%
top 64.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 14
Latest updateFeb 15

Description

Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detection bypass via a physical attack. HP is releasing firmware and guidance to mitigate these potential vulnerabilities.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:LExploitability: 0.9 | Impact: 5.5

Affected Packages28 packages

CVEListV5hp_inc/certain_hp_desktop_pc_products See HP Security Bulletin reference for affected versions.
NVDhp/z2_mini_g9_firmware< 02.02.02
NVDhp/z1_g8_tower_firmware< 02.14.00
NVDhp/z1_g9_tower_firmware< 02.12.02

🔴Vulnerability Details

2
GHSA
GHSA-hrh4-w8wr-g4mx: Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detectio2024-02-15
CVEList
CVE-2022-48219: Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detectio2024-02-14
CVE-2022-48219 — Protection Mechanism Failure in HP | cvebase