Impact
HP Easy Start for macOS contains potential vulnerabilities that may allow a user to gain higher privileges than intended. If exploited, the attacker could perform unauthorized actions on the system, including executing privileged commands or modifying system files.
Affected Systems
Vulnerable installations include any HP Easy Start for macOS product version earlier than 2.16.7.260722. The affected vendor is HP Inc., and the software is used on macOS systems to streamline setup and configuration, so users running these older versions are at risk.
Risk and Exploitability
The CVSS score of 8.5 classifies the issue as High severity. No EPSS score is currently available, so the immediate likelihood of exploitation cannot be quantified, but the vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attack vector is local, requiring an attacker to have access to the same macOS system where HP Easy Start is installed. Successful exploitation could allow the attacker to elevate privileges and gain unauthorized control over the affected machine.
OpenCVE Enrichment