CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

hp

pro_x2_612_g2_firmware

19 known vulnerabilities · sorted by CVSS score

CVE-2022-37018
HIGH8.4

A potential vulnerability has been identified in the system BIOS for certain HP PC products which may allow escalation of privileges and code execution. HP is releasing firmware updates to mitigate the potential vulnerability.

hp / z1_g3_firmware+74
Local
Published Dec 12, 2022
CVE-2022-31636
HIGH7.8

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+402
Local
Published Jun 13, 2023
CVE-2021-3809
HIGH7.8

Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code execution. HP is releasing firmware updates to mitigate these potential vulnerabilities.

hp / elite_dragonfly_firmware+192
Local
Published Feb 1, 2023
CVE-2022-31638
HIGH7.8

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+402
Local
Published Jun 13, 2023
CVE-2022-31635
HIGH7.8

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+402
Local
Published Jun 13, 2023
CVE-2022-43777
HIGH7.8

Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+386
Local
Published Jun 12, 2023
CVE-2022-27540
HIGH7.8

A potential Time-of-Check to Time-of Use (TOCTOU) vulnerability has been identified in the HP BIOS for certain HP PC products, which might allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential vulnerability.

hp / dragonfly_folio_13.5_inch_g3_2-in-1_notebook_pc_firmware+353
Local
Published Jun 28, 2024
CVE-2022-27541
HIGH7.8

Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+386
Local
Published Jun 12, 2023
CVE-2021-3808
HIGH7.8

Potential security vulnerabilities have been identified in the BIOS (UEFI Firmware) for certain HP PC products, which might allow arbitrary code execution. HP is releasing firmware updates to mitigate these potential vulnerabilities.

hp / elite_dragonfly_firmware+192
Local
Published Feb 1, 2023
CVE-2022-31639
HIGH7.8

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+402
Local
Published Jun 13, 2023
CVE-2022-43778
HIGH7.8

Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+386
Local
Published Jun 12, 2023
CVE-2021-3439
HIGH7.8

HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these potential vulnerabilities.

hp / 340_g3_firmware+376
Local
Published Feb 1, 2023
CVE-2022-31637
HIGH7.8

Potential time-of-check to time-of-use (TOCTOU) vulnerabilities have been identified in the BIOS for certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+402
Local
Published Jun 13, 2023
CVE-2022-27539
HIGH7.8

Potential Time-of-Check to Time-of Use (TOCTOU) vulnerabilities have been identified in the HP BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure.

hp / zcentral_4r_workstation_firmware+386
Local
Published Jun 12, 2023
CVE-2022-31642
HIGH7.0

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

hp / elite_dragonfly_firmware+304
Local
Published Jun 14, 2023
CVE-2022-31641
HIGH7.0

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

hp / elite_dragonfly_firmware+304
Local
Published Jun 14, 2023
CVE-2022-31640
HIGH7.0

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.

hp / elite_dragonfly_firmware+304
Local
Published Jun 14, 2023
CVE-2020-15596
MEDIUM6.7

The ALPS ALPINE touchpad driver before 8.2206.1717.634, as used on various Dell, HP, and Lenovo laptops, allows attackers to conduct Path Disclosure attacks via a "fake" DLL file.

hp / elite_x2_1012_g1_firmware+13
Local
Published Aug 12, 2020
CVE-2019-18618
MEDIUM6.0

Incorrect access control in the firmware of Synaptics VFS75xx family fingerprint sensors that include external flash (all versions prior to 2019-11-15) allows a local administrator or physical attacker to compromise the confidentiality of sensor data via injection of an unverified partition table.

synaptics / vfs75xx_firmware+151
Local
Published Jul 22, 2020