Skip to content
Threat Feed

Vendor

HP

6 briefs RSS
medium advisory

Local Privilege Escalation Vulnerability in HP Software

A local privilege escalation vulnerability in HP software allows a local attacker to elevate their privileges on affected systems.

HP Computer
1t
high advisory

Arbitrary File Manipulation Vulnerability in HP Web JetAdmin

A remote unauthenticated attacker can exploit CVE-2024-4171 in HP Web JetAdmin to perform unauthorized file manipulation on the underlying host system.

Web JetAdmin
1c
high advisory

HP Security Advisory for Poly Voice Vulnerability

HP released a security advisory addressing a critical vulnerability in Poly VVX, Trio 8300, Trio 8500, and Trio 8800 devices, potentially allowing remote control.

Poly VVX +3 hp poly voip remote-control
2r
medium advisory

Persistence via Windows Installer (Msiexec)

Adversaries may establish persistence by abusing the Windows Installer (msiexec.exe) to create scheduled tasks or modify registry run keys, allowing for malicious code execution upon system startup or user logon.

Windows +21 persistence defense-evasion
3r 3t
medium advisory

WMI Incoming Lateral Movement

Detection of processes executed via Windows Management Instrumentation (WMI) on a remote host indicating potential adversary lateral movement.

HPWBEM +3 lateral-movement wmi windows
3r 2t
high advisory

Suspicious Microsoft HTML Application Child Process

Mshta.exe spawning a suspicious child process, such as cmd.exe or powershell.exe, indicates potential adversarial activity leveraging Mshta to execute malicious scripts and evade detection on Windows systems.

Windows +2 defense-evasion mshta process-creation
2r 1t