Privilege Escalation in UEFI Firmware for HP PC Products
CVE-2021-39300
Key Information:
- Vendor
HP
- Vendor
- CVE Published:
- 16 February 2022
What is CVE-2021-39300?
Certain HP PC products are susceptible to vulnerabilities in UEFI firmware, which may enable unauthorized privilege escalation and the potential for arbitrary code execution. This flaw poses a significant risk, as it can allow attackers increased control over system functions. Users are encouraged to update their firmware to mitigate these vulnerabilities.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
BUSINESS NOTEBOOK PCS BIOS; BUSINESS DESKTOP PCS BIOS; RETAIL POINT-OF-SALE SYSTEMS BIOS; WORKSTATIONS BIOS before 01.12.00
BUSINESS NOTEBOOK PCS BIOS; BUSINESS DESKTOP PCS BIOS; RETAIL POINT-OF-SALE SYSTEMS BIOS; WORKSTATIONS BIOS before 01.08.00
BUSINESS NOTEBOOK PCS BIOS; BUSINESS DESKTOP PCS BIOS; RETAIL POINT-OF-SALE SYSTEMS BIOS; WORKSTATIONS BIOS before 01.19.00
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved