CVE-2021-3439

HIGH

HP 340 G3/G4, 346 G3/G4, 348 G3/G4, Elite Dragonfly, Elite x2, EliteBook Firmware - Improper Privilege Management

Title source: llm
STIX 2.1

Description

HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these potential vulnerabilities.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0003
EPSS Percentile 8.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-269
Status published
Products (50)
hp/200_g3_all-in-one_\(rom_family_ssid_8431\)_firmware
hp/200_g3_all-in-one_\(rom_family_ssid_84de\)_firmware
hp/200_g4_22_all-in-one_pc_\(rom_family_ssid_86f0\)_firmware
hp/200_g4_22_all-in-one_pc_\(rom_family_ssid_86f8\)_firmware
hp/200_pro_g4_22_all-in-one_pc_\(rom_family_ssid_86f0\)_firmware
hp/200_pro_g4_22_all-in-one_pc_\(rom_family_ssid_86f8\)_firmware
hp/205_g4_22_all-in-one_pc_\(rom_family_ssid_86f0\)_firmware
hp/205_g4_22_all-in-one_pc_\(rom_family_ssid_86f8\)_firmware
hp/205_pro_g4_22_all-in-one_pc_\(rom_family_ssid_86f0\)_firmware
hp/205_pro_g4_22_all-in-one_pc_\(rom_family_ssid_86f8\)_firmware
... and 40 more
Published Feb 01, 2023
Tracked Since Feb 18, 2026