VendorsHPsupport_assistantany version
Vulnerabilities

HP Support Assistant any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

18CVEs
CVE-2016-2245
HP Support Assistant before 8.1.52.1 allows remote attackers to bypass authentication via unspecified vectors.
Published 2016-03-19 · Modified
10.0EPSS 0.059
CVE-2022-38395
HP Support Assistant uses HP Performance Tune-up as a diagnostic tool. HP Support Assistant uses Fusion to launch HP Performance Tune-up. It is possible for an attacker to exploit the DLL hijacking vulnerability and elevate privileges when Fusion launches the HP Performance Tune-up.
Published 2022-11-18 · Modified
7.8EPSS 0.028
CVE-2019-6329
HP Support Assistant 8.7.50 and earlier allows a user to gain system privilege and allows unauthorized modification of directories or files. Note: A different vulnerability than CVE-2019-6328.
Published 2019-06-25 · Modified
7.8EPSS 0.016
CVE-2020-6917
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
Published 2022-02-16 · Modified
7.8EPSS 0.009
CVE-2020-6918
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
Published 2022-02-16 · Modified
7.8EPSS 0.009
CVE-2020-6919
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
Published 2022-02-16 · Modified
7.8EPSS 0.009
CVE-2020-6921
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
Published 2022-02-16 · Modified
7.8EPSS 0.009
CVE-2020-6922
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
Published 2022-02-16 · Modified
7.8EPSS 0.009
CVE-2019-6328
HP Support Assistant 8.7.50 and earlier allows a user to gain system privilege and allows unauthorized modification of directories or files. Note: A different vulnerability than CVE-2019-6329.
Published 2019-06-25 · Modified
7.8EPSS 0.007
CVE-2022-23455
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.
Published 2023-01-30 · Modified
7.8EPSS 0.002
CVE-2022-23453
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.
Published 2023-01-30 · Modified
7.8EPSS 0.002
CVE-2022-23454
Potential security vulnerabilities have been identified in HP Support Assistant. These vulnerabilities include privilege escalation, compromise of integrity, allowed communication with untrusted clients, and unauthorized modification of files.
Published 2023-01-30 · Modified
7.8EPSS 0.002
CVE-2025-43026
HP Support Assistant – Potential Escalation of Privilege
Published 2025-06-05 · Analyzed
7.8EPSS 0.001
CVE-2025-10578
HP Support Assistant - Potential Escalation of Privilege
Published 2025-10-01 · Analyzed
7.8EPSS 0.001
CVE-2018-5927
HP Support Assistant before 8.7.50.3 allows an unauthorized person with local access to load arbitrary code.
Published 2019-03-27 · Modified
7.3EPSS 0.004
CVE-2020-6920
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
Published 2022-02-16 · Modified
5.5EPSS 0.009
CVE-2017-2744
The vulnerability allows attacker to extract binaries into protected file system locations in HP Support Assistant before 12.7.26.1.
Published 2018-01-23 · Modified
5.5EPSS 0.005
CVE-2022-23456
Potential arbitrary file deletion vulnerability has been identified in HP Support Assistant software.
Published 2022-01-28 · Modified
5.5EPSS 0.003