VYPR

Zhan X 13 G2 Firmware

by Microfocus

CVEs (27)

  • CVE-2021-3439HigFeb 1, 2023
    risk 0.51cvss 7.8epss 0.00

    HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these potential vulnerabilities.

  • CVE-2022-31642HigJun 14, 2023
    risk 0.46cvss 7.0epss 0.00

    Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

  • CVE-2022-31641HigJun 14, 2023
    risk 0.46cvss 7.0epss 0.00

    Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

  • CVE-2022-31640HigJun 14, 2023
    risk 0.46cvss 7.0epss 0.00

    Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

  • CVE-2022-27538HigFeb 1, 2023
    risk 0.46cvss 7.0epss 0.00

    A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential…

  • CVE-2019-18913MedJan 31, 2020
    risk 0.44cvss 6.8epss 0.01

    A potential security vulnerability with pre-boot DMA may allow unauthorized UEFI code execution using open-case attacks. This industry-wide issue requires physically accessing internal expansion slots with specialized hardware and software tools to modify UEFI code in memory.…

  • CVE-2019-18618MedJul 22, 2020
    risk 0.39cvss 6.0epss 0.01

    Incorrect access control in the firmware of Synaptics VFS75xx family fingerprint sensors that include external flash (all versions prior to 2019-11-15) allows a local administrator or physical attacker to compromise the confidentiality of sensor data via injection of an…

Page 2 of 2