CVE-2022-48219

Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detection bypass via a physical attack. HP is releasing firmware and guidance to mitigate these potential vulnerabilities.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.4 MEDIUM
PHYSICAL
LOW
NONE
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
hpCNA
---
---
CVEADP
---
---
CISA-ADPADP
6.4 MEDIUM
PHYSICAL
LOW
NONE
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 35%
VendorProductVersion
hpelite_mini_600_g9_firmware
𝑥
< 02.12.02
hpelite_mini_800_g9_firmware
𝑥
< 02.12.02
hpelite_sff_600_g9_firmware
𝑥
< 02.12.02
hpelite_sff_800_g9_firmware
𝑥
< 02.12.02
hpelite_tower_600_g9_firmware
𝑥
< 02.12.02
hpelite_tower_680_g9_firmware
𝑥
< 02.12.02
hpelite_tower_800_g9_firmware
𝑥
< 02.12.02
hpelite_tower_880_g9_firmware
𝑥
< 02.12.02
hppro_mini_260_g9_firmware
𝑥
< 02.14.00
hppro_mini_400_g9_firmware
𝑥
< 02.12.02
hppro_sff_400_g9_firmware
𝑥
< 02.12.02
hppro_tower_400_g9_firmware
𝑥
< 02.12.02
hppro_tower_480_g9_firmware
𝑥
< 02.12.02
hpz1_g8_tower_firmware
𝑥
< 02.14.00
hpz1_g9_tower_firmware
𝑥
< 02.12.02
hpelitedesk_800_g8_desktop_mini_firmware
𝑥
< 02.14.00
hpelitedesk_800_g8_small_form_factor_firmware
𝑥
< 02.14.00
hpelitedesk_800_g8_tower_firmware
𝑥
< 02.14.00
hpelitedesk_880_g8_tower_firmware
𝑥
< 02.14.00
hpeliteone_800_g8_24_all-in-one_firmware
𝑥
< 02.14.00
hpeliteone_800_g8_27_all-in-one_firmware
𝑥
< 02.14.00
hpmini_conferencing_pc_firmware
𝑥
< 02.12.02
hpz2_mini_g9_firmware
𝑥
< 02.02.02
hpz2_small_form_factor_g8_firmware
𝑥
< 01.06.05
hpz2_small_form_factor_g9_firmware
𝑥
< 02.02.02
hpz2_tower_g8_firmware
𝑥
< 01.06.05
hpz2_tower_g9_firmware
𝑥
< 02.02.02
𝑥
= Vulnerable software versions