CVE-2026-19915 PUBLISHED

HP Support Assistant - Local Escalation of Privilege

Assigner: hp
Reserved: 14.08.2026 Published: 22.09.2026 Updated: 22.09.2026

A potential security vulnerability has been identified in the HP Support Assistant for versions prior to 9.55.10.0. The vulnerability could potentially allow a local attacker to escalate privileges due to insufficient access controls.

Metrics

CVSS Vector: CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 7.3

Product Status

Vendor HP Inc
Product HP Support Assistant
Versions Default: unaffected
  • affected from 0 to <9.55.10.0 (excl.)

Credits

  • Naor of Novee Security finder

References

Problem Types

  • CWE-269 CWE