VendorsHPzbook_studio_g3all versions
Vulnerabilities

HP ZBook Studio G3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

17CVEs
CVE-2019-16284
A potential security vulnerability has been identified in multiple HP products and versions which involves possible execution of arbitrary code during boot services that can result in elevation of privilege. The EFI_BOOT_SERVICES structure might be overwritten by an attacker to execute arbitrary SMM (System Management Mode) code. A list of affected products and versions are available in https://support.hp.com/rs-en/document/c06456250.
Published 2019-11-05 · Modified
9.0EPSS 0.020
CVE-2022-37018
A potential vulnerability has been identified in the system BIOS for certain HP PC products which may allow escalation of privileges and code execution. HP is releasing firmware updates to mitigate the potential vulnerability.
Published 2022-11-21 · Modified
8.4EPSS 0.002
CVE-2016-2243
Sure Start on HP Commercial PCs 2015 allows local users to cause a denial of service (BIOS recovery failure) by leveraging administrative access.
Published 2016-03-04 · Modified
7.9EPSS 0.004
CVE-2022-43778
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
Published 2023-06-12 · Modified
7.8EPSS 0.002
CVE-2022-31636
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-43777
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
Published 2023-06-12 · Modified
7.8EPSS 0.001
CVE-2022-31639
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-31638
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-31637
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-31635
Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Published 2023-06-13 · Modified
7.8EPSS 0.001
CVE-2022-27541
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
Published 2023-06-12 · Modified
7.8EPSS 0.001
CVE-2022-27539
Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.
Published 2023-06-12 · Modified
7.8EPSS 0.001
CVE-2022-27540
A potential Time-of-Check to Time-of Use (TOCTOU) vulnerability has been identified in the HP BIOS for certain HP PC products, which might allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential vulnerability.
Published 2024-06-28 · Analyzed
7.8EPSS 0.001
CVE-2022-37020
HP PC BIOS May 2024 Security Updates for Potential Stack Buffer Overflows
Published 2024-06-10 · Analyzed
6.8EPSS 0.002
CVE-2022-37019
HP PC BIOS May 2024 Security Updates for Potential Stack Buffer Overflows
Published 2024-06-10 · Analyzed
6.8EPSS 0.002
CVE-2020-15596
The ALPS ALPINE touchpad driver before 8.2206.1717.634, as used on various Dell, HP, and Lenovo laptops, allows attackers to conduct Path Disclosure attacks via a "fake" DLL file.
Published 2020-08-12 · Modified
6.7EPSS 0.005
CVE-2017-8360
Conexant Systems mictray64 task, as used on HP Elite, EliteBook, ProBook, and ZBook systems, leaks sensitive data (keystrokes) to any process. In mictray64.exe (mic tray icon) 1.0.0.46, a LowLevelKeyboardProc Windows hook is used to capture keystrokes. This data is leaked via unintended channels: debug messages accessible to any process that is running in the current user session, and filesystem access to C:\Users\Public\MicTray.log by any process.
Published 2017-05-12 · Modified
5.5EPSS 0.005