Integrity Compromise and Untrusted Client Communication in HP Support Assistant Software
CVE-2020-6922
7.8HIGH
Summary
A security flaw in HP Support Assistant software may lead to a compromise of data integrity and permit unauthorized communication with untrusted clients. This vulnerability could enable potential attackers to exploit weaknesses in the software, raising concerns about the security of sensitive information and the overall integrity of the system.
Affected Version(s)
HP Support Assistant before 9.11
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved