CVE-2022-1038

HIGH

HP Jumpstart - Incorrect Default Permissions

Title source: llm
STIX 2.1

Description

A potential security vulnerability has been identified in the HP Jumpstart software, which might allow escalation of privilege. HP is recommending that customers uninstall HP Jumpstart and use myHP software.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0003
EPSS Percentile 8.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-276
Status published
Products (1)
hp/jumpstart
Published Dec 12, 2022
Tracked Since Feb 18, 2026