CVE-2022-38396

HP Factory Preinstalled Images on certain systems that shipped with Windows 10 versions 20H2 and earlier OS versions might allow escalation of privilege via execution of certain files outside the restricted path. This potential vulnerability was remediated starting with Windows 10 versions 21H2 on October 31, 2021.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows_10_1507:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1511:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1703:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1709:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1803:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_2004:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_20h2:-:*:*:*:*:*:*:*

History

25 Apr 2023, 16:01

Type Values Removed Values Added
CPE cpe:2.3:o:microsoft:windows_10_1807:-:*:*:*:*:*:*:*

22 Feb 2023, 16:24

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Microsoft windows 10 1507
Microsoft windows 10 1703
Microsoft windows 10 1803
Microsoft windows 10 1607
Microsoft windows 10 1807
Microsoft windows 10 1909
Microsoft windows 10 1709
Microsoft windows 10 1809
Microsoft
Microsoft windows 10 2004
Microsoft windows 10 20h2
Microsoft windows 10 1511
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
References (MISC) https://support.hp.com/ie-en/document/ish_7620368-7620413-16 - (MISC) https://support.hp.com/ie-en/document/ish_7620368-7620413-16 - Vendor Advisory
CPE cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1703:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_2004:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1507:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_20h2:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1709:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1807:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1511:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1803:-:*:*:*:*:*:*:*

12 Feb 2023, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-02-12 04:15

Updated : 2023-12-10 14:48


NVD link : CVE-2022-38396

Mitre link : CVE-2022-38396

CVE.ORG link : CVE-2022-38396


JSON object : View

Products Affected

microsoft

  • windows_10_1809
  • windows_10_1803
  • windows_10_20h2
  • windows_10_1709
  • windows_10_1607
  • windows_10_2004
  • windows_10_1909
  • windows_10_1507
  • windows_10_1703
  • windows_10_1511