SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2015-5368

The HP lt4112 LTE/HSPA+ Gobi 4G module with firmware before 12.500.00.15.1803 on EliteBook, ElitePad, Elite, ProBook, Spectre, ZBook, and mt41 Thin Client devices allows remote attackers to modify data or cause a denial of service, or execute arbitrary…

HIGH 7.8EPSS 7.10%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (7.10%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

The HP lt4112 LTE/HSPA+ Gobi 4G module with firmware before 12.500.00.15.1803 on EliteBook, ElitePad, Elite, ProBook, Spectre, ZBook, and mt41 Thin Client devices allows remote attackers to modify data or cause a denial of service, or execute arbitrary code, via unspecified vectors.

CVSS 2.0
7.8 HIGHAV:N/AC:M/Au:N/C:N/I:P/A:C
EPSS
7.10% probability · 94th percentile
CISA KEV
Not listed
Weakness
CWE-119
Affected
hp/hspa\+ gobi 4g · hp/lt4112 lte · hp/elite x2 1010 g2 · hp/elitebook 1040 g1 · hp/elitebook 1040 g2 · hp/elitebook 820 g1 · hp/elitebook 820 g2 · hp/elitebook 825 g2 · hp/elitebook 840 g1 · hp/elitebook 840 g2 · hp/elitebook 845 g1 · hp/elitebook 850 g1 · hp/elitebook 850 g2 · hp/elitebook 855 g1 · hp/elitebook folio 9470m · hp/elitebook revolve 810 g1 · hp/elitebook revolve 810 g2 · hp/elitepad 1000 g2 · hp/mt41 thin client · hp/probook 430 g1 · +19 more
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.