2024-12-08 03:06:42 +00:00

113 lines
3.3 KiB
JSON

{
"id": "CVE-2022-23934",
"sourceIdentifier": "hp-security-alert@hp.com",
"published": "2022-03-11T18:15:36.457",
"lastModified": "2024-11-21T06:49:29.287",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Potential vulnerabilities have been identified in the system BIOS of certain HP PC products which may allow Escalation of Privilege, Arbitrary Code Execution, Unauthorized Code Execution, Denial of Service, and Information Disclosure."
},
{
"lang": "es",
"value": "Se han identificado vulnerabilidades potenciales en la BIOS del sistema de ciertos productos de PC de HP que pueden permitir la escalada de privilegios, la ejecuci\u00f3n de c\u00f3digo arbitrario, la ejecuci\u00f3n de c\u00f3digo no autorizado, la denegaci\u00f3n de servicio y una divulgaci\u00f3n de informaci\u00f3n"
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H",
"baseScore": 8.2,
"baseSeverity": "HIGH",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "HIGH",
"userInteraction": "NONE",
"scope": "CHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH"
},
"exploitabilityScore": 1.5,
"impactScore": 6.0
}
],
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:C/I:C/A:C",
"baseScore": 7.2,
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE"
},
"baseSeverity": "HIGH",
"exploitabilityScore": 3.9,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:hp:pc_bios:*:*:*:*:*:*:*:*",
"versionEndExcluding": "02.07.10",
"matchCriteriaId": "E11323E8-3E75-4C94-BC2D-81230634B08A"
}
]
}
]
}
],
"references": [
{
"url": "https://support.hp.com/us-en/document/ish_5817864-5817896-16",
"source": "hp-security-alert@hp.com",
"tags": [
"Vendor Advisory"
]
},
{
"url": "https://support.hp.com/us-en/document/ish_5817864-5817896-16",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
}
]
}