CVE-2019-6321
Last modified
CVE-2019-6321 is a vulnerability of currently unknown severity. HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS code could be tampered with if the TPM is disabled. This vulnerability relates to Workstations whose TPM is disabled by default.. EPSS estimates a 1.45% chance of exploitation in the next 30 days.
Description
HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS code could be tampered with if the TPM is disabled. This vulnerability relates to Workstations whose TPM is disabled by default.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hp | Z4 G4 Workstation Firmware | < 1.70 |
| Hp | Z4 G4 Core-X Workstation Firmware | < 1.70 |
| Hp | Z6 G4 Workstation Firmware | < 1.71 |
| Hp | Z8 G4 Workstation Firmware | < 1.71 |
References
- https://support.hp.com/us-en/document/c06318199Patch, Vendor Advisory
- https://support.hp.com/us-en/document/c06318199Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-6321?
How severe is CVE-2019-6321?
How do I fix CVE-2019-6321?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-6294An issue was discovered in EasyCMS 1.5. There is CSRF via th…
- CVE-2019-6295Cleanto 5.0 has SQL Injection via the assets/lib/service_met…
- CVE-2019-6296Cleanto 5.0 has SQL Injection via the assets/lib/export_ajax…
- CVE-2019-6318HP LaserJet Enterprise printers, HP PageWide Enterprise prin…
- CVE-2019-6319HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, …8.1
- CVE-2019-6320Certain HP DeskJet 3630 All-in-One Printers models F5S43A - …8.1
- CVE-2019-6322HP has identified a security vulnerability with some version…
- CVE-2019-6323HP Color LaserJet Pro M280-M281 Multifunction Printer series…
- CVE-2019-6324HP Color LaserJet Pro M280-M281 Multifunction Printer series…
- CVE-2019-6325HP Color LaserJet Pro M280-M281 Multifunction Printer series…
- CVE-2019-6326HP Color LaserJet Pro M280-M281 Multifunction Printer series…
- CVE-2019-6327HP Color LaserJet Pro M280-M281 Multifunction Printer series…9.8
Are you affected by CVE-2019-6321?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
