First published: Mon Jan 30 2023(Updated: )
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Support Assistant | <9.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-23453 is a potential security vulnerability identified in HP Support Assistant that includes privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.
HP Support Assistant versions up to and excluding 9.11 are affected by CVE-2022-23453.
The severity of CVE-2022-23453 is high with a CVSS score of 7.8.
To fix CVE-2022-23453, it is recommended to update HP Support Assistant to version 9.11 or higher.
More information about CVE-2022-23453 can be found in the HP Support document at the following link: [HP Support Document](https://support.hp.com/us-en/document/ish_5585999-5586023-16/hpsbgn03762).