9
CVE-2019-6321
- EPSS 0.36%
- Veröffentlicht 29.05.2019 20:29:00
- Zuletzt bearbeitet 21.11.2024 04:46:24
- Quelle hp-security-alert@hp.com
- Teams Watchlist Login
- Unerledigt Login
HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS code could be tampered with if the TPM is disabled. This vulnerability relates to Workstations whose TPM is disabled by default.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hp ≫ Z4 G4 Workstation Firmware Version < 1.70
Hp ≫ Z4 G4 Core-x Workstation Firmware Version < 1.70
Hp ≫ Z6 G4 Workstation Firmware Version < 1.71
Hp ≫ Z8 G4 Workstation Firmware Version < 1.71
Hp ≫ Z4 G4 Workstation Firmware SwPlatformlinux Version < 1.70
Hp ≫ Z4 G4 Core-x Workstation Firmware SwPlatformlinux Version < 1.70
Hp ≫ Z6 G4 Workstation Firmware SwPlatformlinux Version < 1.71
Hp ≫ Z8 G4 Workstation Firmware SwPlatformlinux Version < 1.71
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.36% | 0.574 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.2 | 1.2 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 9 | 8 | 10 |
AV:N/AC:L/Au:S/C:C/I:C/A:C
|
CWE-667 Improper Locking
The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.