CVE-2017-2740: HP Thinpro

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

A potential security vulnerability has been identified with the command line shell of the HP ThinPro operating system 6.1, 5.2.1, 5.2, 5.1, 5.0, and 4.4. The vulnerability could result in a local unauthorized elevation of privilege on an HP thin client device.

Affected products

  • HP Thinpro: version 4.4 only; version 5.0 only; version 5.1 only; version 5.2 only; version 5.2.1 only; version 6.1 only

Published 2018-01-23. Last modified 2026-06-17.