MEDIUM · 6.4

CVE-2022-48220

Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detection bypass via a physical attack. HP is releasing fi...

Vulnerability Description

Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detection bypass via a physical attack. HP is releasing firmware and guidance to mitigate these potential vulnerabilities.

CVSS Score

6.4

MEDIUM

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Attack Vector
PHYSICAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
LOW

Affected Products

VendorProductVersions
HpElite Mini 600 G9 Firmware< 02.12.02
HpElite Mini 600 G9-
HpElite Mini 800 G9 Firmware< 02.12.02
HpElite Mini 800 G9-
HpElite Sff 600 G9 Firmware< 02.12.02
HpElite Sff 600 G9-
HpElite Sff 800 G9 Firmware< 02.12.02
HpElite Sff 800 G9-
HpElite Tower 600 G9 Firmware< 02.12.02
HpElite Tower 600 G9-
HpElite Tower 680 G9 Firmware< 02.12.02
HpElite Tower 680 G9-
HpElite Tower 800 G9 Firmware< 02.12.02
HpElite Tower 800 G9-
HpElite Tower 880 G9 Firmware< 02.12.02
HpElite Tower 880 G9-
HpElitedesk 800 G8 Desktop Mini Firmware< 02.14.00
HpElitedesk 800 G8 Desktop Mini-
HpElitedesk 800 G8 Small Form Factor Firmware< 02.14.00
HpElitedesk 800 G8 Small Form Factor-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-48220?

CVE-2022-48220 is a vulnerability with a CVSS score of 6.4 (MEDIUM). Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which might allow intrusion detection bypass via a physical attack. HP is releasing fi...

How severe is CVE-2022-48220?

CVE-2022-48220 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-48220?

Check the references section above for vendor advisories and patch information. Affected products include: Hp Elite Mini 600 G9 Firmware, Hp Elite Mini 600 G9, Hp Elite Mini 800 G9 Firmware, Hp Elite Mini 800 G9, Hp Elite Sff 600 G9 Firmware.