Vulnerabilities (CVE)

Filtered by vendor Hp Subscribe
Filtered by product Support Assistant
Total 16 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-23453 1 Hp 1 Support Assistant 2023-12-10 N/A 7.8 HIGH
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.
CVE-2022-38395 1 Hp 2 Fusion, Support Assistant 2023-12-10 N/A 7.8 HIGH
HP Support Assistant uses HP Performance Tune-up as a diagnostic tool. HP Support Assistant uses Fusion to launch HP Performance Tune-up. It is possible for an attacker to exploit the DLL hijacking vulnerability and elevate privileges when Fusion launches the HP Performance Tune-up.
CVE-2022-23455 1 Hp 1 Support Assistant 2023-12-10 N/A 7.8 HIGH
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.
CVE-2022-23454 1 Hp 1 Support Assistant 2023-12-10 N/A 7.8 HIGH
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.
CVE-2020-6920 1 Hp 1 Support Assistant 2023-12-10 4.3 MEDIUM 5.5 MEDIUM
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
CVE-2020-6922 1 Hp 1 Support Assistant 2023-12-10 6.8 MEDIUM 7.8 HIGH
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
CVE-2020-6918 1 Hp 1 Support Assistant 2023-12-10 6.8 MEDIUM 7.8 HIGH
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
CVE-2020-6919 1 Hp 1 Support Assistant 2023-12-10 6.8 MEDIUM 7.8 HIGH
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
CVE-2020-6917 1 Hp 1 Support Assistant 2023-12-10 6.8 MEDIUM 7.8 HIGH
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
CVE-2020-6921 1 Hp 1 Support Assistant 2023-12-10 6.8 MEDIUM 7.8 HIGH
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
CVE-2022-23456 1 Hp 1 Support Assistant 2023-12-10 2.1 LOW 5.5 MEDIUM
Potential arbitrary file deletion vulnerability has been identified in HP Support Assistant software.
CVE-2019-6328 1 Hp 1 Support Assistant 2023-12-10 7.2 HIGH 7.8 HIGH
HP Support Assistant 8.7.50 and earlier allows a user to gain system privilege and allows unauthorized modification of directories or files. Note: A different vulnerability than CVE-2019-6329.
CVE-2019-6329 1 Hp 1 Support Assistant 2023-12-10 7.2 HIGH 7.8 HIGH
HP Support Assistant 8.7.50 and earlier allows a user to gain system privilege and allows unauthorized modification of directories or files. Note: A different vulnerability than CVE-2019-6328.
CVE-2018-5927 1 Hp 1 Support Assistant 2023-12-10 4.1 MEDIUM 7.3 HIGH
HP Support Assistant before 8.7.50.3 allows an unauthorized person with local access to load arbitrary code.
CVE-2017-2744 1 Hp 1 Support Assistant 2023-12-10 2.1 LOW 5.5 MEDIUM
The vulnerability allows attacker to extract binaries into protected file system locations in HP Support Assistant before 12.7.26.1.
CVE-2016-2245 1 Hp 1 Support Assistant 2023-12-10 10.0 HIGH 9.8 CRITICAL
HP Support Assistant before 8.1.52.1 allows remote attackers to bypass authentication via unspecified vectors.