CVE-2025-43026: HP Support Assistant – Potential Escalation of Privilege
Published Jun 5, 2025
·Updated
A potential security vulnerability has been identified in the HP Support Assistant for versions prior to 9.44.18.0. The vulnerability could potentially allow a local attacker to escalate privileges via an arbitrary file write.
Affected Software
2 affected components
HP Support Assistant<9.44.18.0
HP Support Assistant<9.44.18.0
Event History
Jun 5, 2025
CVE Published
via MITRE·07:41 PM
Data Sourced
via MITRE·07:41 PM
DescriptionWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
May 23, 58006
Event
via NVD·04:55 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-43026?
CVE-2025-43026 is considered a moderate-severity vulnerability as it allows a local attacker to escalate privileges.
2
How do I fix CVE-2025-43026?
To mitigate CVE-2025-43026, upgrade HP Support Assistant to version 9.44.18.0 or later.
3
Who is affected by CVE-2025-43026?
CVE-2025-43026 affects users running HP Support Assistant versions prior to 9.44.18.0.
4
What type of attack does CVE-2025-43026 allow?
CVE-2025-43026 allows a local attacker to escalate privileges via an arbitrary file write.
5
Is there a workaround for CVE-2025-43026?
There is no official workaround for CVE-2025-43026; the recommended action is to update the software.