hp

2,337 tracked vulnerabilities.

CVE-2024-42395 CRITICAL
AP Certificate Management Service - Unauthenticated RCE
Aug 06, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-42394 CRITICAL
Soft AP Daemon Service - Unauthenticated RCE
Aug 06, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-42393 CRITICAL
Soft AP Daemon Service - Unauthenticated RCE
Aug 06, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-41913 HIGH
HP Poly Clariti Manager < 10.12.0.2_100 - Unrestricted Upload of File with Dangerous Type
Aug 06, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-41911 MEDIUM
Poly Clariti Manager < 10.12.0.2_100 - Cross-Site Scripting
Aug 06, 2024
CVSS 5.4
EPSS 0.01
CVE-2024-41910 MEDIUM
Poly Clariti Manager < 10.12.0.2_100 - Cross-Site Scripting in JavaScript
Aug 06, 2024
CVSS 6.1
EPSS 0.01
CVE-2024-22442 CRITICAL
HP 3PAR Service Processor Firmware < 5.1.2.0 - Authentication Bypass
Jul 16, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-6147 HIGH
Poly Plantronics Hub - Privilege Escalation
Jun 20, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-5143 MEDIUM
HP HP Printer Firmware <= 002_2413A - SMTP Credential Exposure
May 23, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-2301 HIGH
HP LaserJet Pro Firmware < 2023-03-30 - Cross-Site Scripting via Web Management Interface
May 23, 2024
CVSS 7.6
EPSS 0.01
CVE-2024-31483 MEDIUM
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Authenticated Arbitrary File Read via PAPI CLI Service
May 14, 2024
CVSS 4.9
EPSS 0.00
CVE-2024-31482 MEDIUM
ArubaOS 10.3.0.0-10.4.1.0 & InstantOS 6.4.0.0-8.6.0.23 - DoS via PAPI ANSI Escape Code
May 14, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-31481 MEDIUM
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Denial of Service via PAPI CLI Service
May 14, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-31480 MEDIUM
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Denial of Service via PAPI CLI Service
May 14, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-31479 MEDIUM
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Denial of Service via PAPI Protocol
May 14, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-31478 MEDIUM
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Denial of Service via PAPI Protocol
May 14, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-31477 HIGH
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Authenticated OS Command Injection via CLI
May 14, 2024
CVSS 7.2
EPSS 0.01
CVE-2024-31476 HIGH
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Authenticated OS Command Injection via CLI
May 14, 2024
CVSS 7.2
EPSS 0.01
CVE-2024-31475 HIGH
ArubaOS 10.3.0.0-10.4.1.0 & InstantOS 6.4.0.0-8.6.0.23 - Arbitrary File Deletion via PAPI
May 14, 2024
CVSS 8.2
EPSS 0.01
CVE-2024-31474 HIGH
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Arbitrary File Deletion via PAPI CLI Service
May 14, 2024
CVSS 8.2
EPSS 0.01
CVE-2024-31473 CRITICAL
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Remote Code Execution via PAPI UDP Port
May 14, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-31472 CRITICAL
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Remote Code Execution via PAPI UDP Port
May 14, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-31471 CRITICAL
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Remote Code Execution via PAPI UDP Port
May 14, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-31470 CRITICAL
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Remote Code Execution via SAE Packet Handling
May 14, 2024
CVSS 9.8
EPSS 0.04
CVE-2024-31469 CRITICAL
ArubaOS 10.3.0.0-10.4.1.0 and InstantOS 6.4.0.0-8.6.0.23 - Unauthenticated Remote Code Execution via PAPI UDP Port
May 14, 2024
CVSS 9.8
EPSS 0.02