CVE-2024-4143

CRITICAL

HP PC < - RCE

Title source: llm
STIX 2.1

Description

A potential security vulnerability has been identified in certain HP PC products using AMI BIOS, which might allow arbitrary code execution. AMI has released firmware updates to mitigate this vulnerability.

References (1)

Core 1

Scores

CVSS v3 9.8
EPSS 0.0021
EPSS Percentile 43.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-120
Status published
Products (1)
HP Inc./Certain HP PC Products See HP security bulletin reference for affected versions
Published Jul 15, 2024
Tracked Since Feb 18, 2026