CVE-2024-5477
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-08-13

Last updated on: 2025-08-14

Assigner: HP Inc.

Description
A potential security vulnerability has been identified in the System BIOS for some HP PC products which may allow escalation of privilege, arbitrary code execution, denial of service, or information disclosure via a physical attack that requires specialized equipment and knowledge. HP is releasing firmware mitigation for the potential vulnerability.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-08-13
Last Modified
2025-08-14
Generated
2026-05-06
AI Q&A
2025-08-13
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
hp system_bios *
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-1256 The product provides software-controllable device functionality for capabilities such as power and clock management, but it does not properly limit functionality that can lead to modification of hardware memory or register bits, or the ability to observe physical side channels.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability is in the System BIOS of some HP PC products and may allow an attacker with physical access and specialized equipment and knowledge to escalate privileges, execute arbitrary code, cause denial of service, or disclose information.


How can this vulnerability impact me? :

If exploited, this vulnerability could allow an attacker to gain higher privileges on the system, run unauthorized code, disrupt system availability, or access sensitive information, potentially compromising the security and functionality of affected HP PCs.


What immediate steps should I take to mitigate this vulnerability?

Apply the firmware mitigation released by HP for the affected System BIOS on your HP PC products to address the vulnerability.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart