| Vulnerability Name: | CVE-2008-0706 (CCN-41521) | ||||||||
| Assigned: | 2008-03-27 | ||||||||
| Published: | 2008-03-27 | ||||||||
| Updated: | 2017-08-08 | ||||||||
| Summary: | Unspecified vulnerability in the BIOS F.26 and earlier for the HP Compaq Notebook PC allows physically proximate attackers to obtain privileged access via unspecified vectors, possibly involving an authentication bypass of the power-on password. | ||||||||
| CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
| CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C) 5.3 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
5.1 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
| ||||||||
| Vulnerability Type: | CWE-287 | ||||||||
| Vulnerability Consequences: | Bypass Security | ||||||||
| References: | Source: MITRE Type: CNA CVE-2008-0706 Source: CCN Type: HP Security Bulletin HPSBGN02319 SSRT080027 rev.1 HP Compaq Notebook PC BIOS, Local Unauthorized Access Source: HP Type: UNKNOWN HPSBGN02319 Source: CCN Type: SECTRACK ID: 1019730 HP Compaq Notebook PC BIOS Lets Local Users Bypass the Power-on Password Feature to Gain Access Source: SECTRACK Type: UNKNOWN 1019730 Source: CCN Type: OSVDB ID: 43988 HP Compaq Notebook PC BIOS Unspecified Authentication Bypass Source: BID Type: Patch 28495 Source: CCN Type: BID-28495 HP Compaq Notebook PC BIOS Local Unauthorized Access Vulnerability Source: VUPEN Type: UNKNOWN ADV-2008-1043 Source: XF Type: UNKNOWN compaq-pcbios-security-bypass(41521) Source: XF Type: UNKNOWN compaq-pcbios-security-bypass(41521) | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||