VendorsHPelite_slice_firmwareall versions
Vulnerabilities

HP Elite Slice Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

22CVEs
CVE-2019-16284
A potential security vulnerability has been identified in multiple HP products and versions which involves possible execution of arbitrary code during boot services that can result in elevation of privilege. The EFI_BOOT_SERVICES structure might be overwritten by an attacker to execute arbitrary SMM (System Management Mode) code. A list of affected products and versions are available in https://support.hp.com/rs-en/document/c06456250.
Published 2019-11-05 · Modified
9.0EPSS 0.020
CVE-2022-37018
A potential vulnerability has been identified in the system BIOS for certain HP PC products which may allow escalation of privileges and code execution. HP is releasing firmware updates to mitigate the potential vulnerability.
Published 2022-11-21 · Modified
8.4EPSS 0.002
CVE-2022-27537
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate these potential vulnerabilities.
Published 2023-01-30 · Modified
7.8EPSS 0.003
CVE-2021-3809
Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code execution. HP is releasing firmware updates to mitigate these potential vulnerabilities.
Published 2023-01-30 · Modified
7.8EPSS 0.002
CVE-2021-3808
Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code execution. HP is releasing firmware updates to mitigate these potential vulnerabilities.
Published 2023-01-30 · Modified
7.8EPSS 0.002
CVE-2022-31646
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-14 · Modified
7.8EPSS 0.002
CVE-2022-31644
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-14 · Modified
7.8EPSS 0.002
CVE-2022-31645
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-14 · Modified
7.8EPSS 0.002
CVE-2022-43778
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
Published 2023-06-12 · Modified
7.8EPSS 0.002
CVE-2021-3439
HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these potential vulnerabilities.
Published 2023-01-30 · Modified
7.8EPSS 0.002
CVE-2022-31636
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-31637
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-31638
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-31639
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-31635
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-43777
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
Published 2023-06-12 · Modified
7.8EPSS 0.001
CVE-2022-27541
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
Published 2023-06-12 · Modified
7.8EPSS 0.001
CVE-2022-27539
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
Published 2023-06-12 · Modified
7.8EPSS 0.001
CVE-2022-27538
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential vulnerability.
Published 2023-01-30 · Modified
7.0EPSS 0.001
CVE-2022-37020
HP PC BIOS May 2024 Security Updates for Potential Stack Buffer Overflows
Published 2024-06-10 · Analyzed
6.8EPSS 0.002
CVE-2022-37019
HP PC BIOS May 2024 Security Updates for Potential Stack Buffer Overflows
Published 2024-06-10 · Analyzed
6.8EPSS 0.002
CVE-2019-18618
Incorrect access control in the firmware of Synaptics VFS75xx family fingerprint sensors that include external flash (all versions prior to 2019-11-15) allows a local administrator or physical attacker to compromise the confidentiality of sensor data via injection of an unverified partition table.
Published 2020-07-22 · Modified
6.0EPSS 0.005