First published: Fri Oct 13 2023(Updated: )
A potential security vulnerability has been identified in the HP ThinUpdate utility (also known as HP Recovery Image and Software Download Tool) which may lead to information disclosure. HP is releasing mitigation for the potential vulnerability.
Credit: hp-security-alert@hp.com hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP ThinUpdate | <2.7.15 | |
Hp Elite Mt645 | ||
Hp Mt21 | ||
Hp Mt22 | ||
Hp Mt31 | ||
Hp Mt32 | ||
Hp Mt43 | ||
Hp Mt44 | ||
Hp Mt45 | ||
Hp Mt46 | ||
Hp Pro Mt440 G3 | ||
Hp T430 | ||
Hp T530 | ||
Hp T540 | ||
Hp T628 | ||
Hp T630 | ||
Hp T638 | ||
Hp T640 | ||
Hp T730 | ||
Hp T740 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability identified in HP ThinUpdate utility (CVE-2023-4499) is a potential security vulnerability that may lead to information disclosure.
The severity of CVE-2023-4499 is high with a CVSS score of 7.5.
HP ThinUpdate version up to and exclusive of 2.7.15 are affected by CVE-2023-4499.
Yes, HP ThinUpdate is the only affected software by CVE-2023-4499.
To mitigate the potential vulnerability in HP ThinUpdate (CVE-2023-4499), install the provided mitigation released by HP.