Hp Engage Flex Mini Retail System Firmware vulnerabilities

12 known vulnerabilities affecting hp/engage_flex_mini_retail_system_firmware.

Total CVEs
12
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH12

Vulnerabilities

Page 1 of 1
CVE-2022-31642HIGHCVSS 7.0fixed in 02.12.012023-06-14
CVE-2022-31642 [HIGH] CWE-367 CVE-2022-31642: Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which m Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
nvd
CVE-2022-31644HIGHCVSS 7.8v02.12.012023-06-14
CVE-2022-31644 [HIGH] CWE-863 CVE-2022-31644: Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which m Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
nvd
CVE-2022-31645HIGHCVSS 7.8v02.12.012023-06-14
CVE-2022-31645 [HIGH] CWE-362 CVE-2022-31645: Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which m Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
nvd
CVE-2022-31641HIGHCVSS 7.0fixed in 02.12.012023-06-14
CVE-2022-31641 [HIGH] CWE-367 CVE-2022-31641: Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which m Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
nvd
CVE-2022-31646HIGHCVSS 7.8v02.12.012023-06-14
CVE-2022-31646 [HIGH] CWE-863 CVE-2022-31646: Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which m Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
nvd
CVE-2022-31640HIGHCVSS 7.0fixed in 02.12.012023-06-14
CVE-2022-31640 [HIGH] CWE-367 CVE-2022-31640: Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which m Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
nvd
CVE-2022-27537HIGHCVSS 7.8v02.12.012023-02-01
CVE-2022-27537 [HIGH] CWE-94 CVE-2022-27537: Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which m Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate these potential vulnerabilities.
nvd
CVE-2021-39297HIGHCVSS 8.8fixed in 02.10.002022-02-16
CVE-2021-39297 [HIGH] CVE-2021-39297: Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which ma Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which may allow escalation of privilege and arbitrary code execution.
nvd
CVE-2021-39301HIGHCVSS 8.8fixed in 02.10.002022-02-16
CVE-2021-39301 [HIGH] CVE-2021-39301: Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which ma Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which may allow escalation of privilege and arbitrary code execution.
nvd
CVE-2021-39300HIGHCVSS 8.8fixed in 02.10.002022-02-16
CVE-2021-39300 [HIGH] CVE-2021-39300: Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which ma Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which may allow escalation of privilege and arbitrary code execution.
nvd
CVE-2021-39299HIGHCVSS 8.8fixed in 02.10.002022-02-16
CVE-2021-39299 [HIGH] CVE-2021-39299: Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which ma Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which may allow escalation of privilege and arbitrary code execution.
nvd
CVE-2021-39298HIGHCVSS 8.8fixed in 02.10.002022-02-16
CVE-2021-39298 [HIGH] CVE-2021-39298: A potential vulnerability in AMD System Management Mode (SMM) interrupt handler may allow an attacke A potential vulnerability in AMD System Management Mode (SMM) interrupt handler may allow an attacker with high privileges to access the SMM resulting in arbitrary code execution which could be used by malicious actors to bypass security mechanisms provided in the UEFI firmware.
nvd