Impact
Potential security vulnerabilities in HP Easy Start for macOS before version 2.16.7.260722 may allow an attacker to gain higher privileges than intended, leading to unauthorized system access and control. The weakness is categorized as CWE‑379, indicating that privileged execution can be achieved by manipulating a component that requires elevated rights.
Affected Systems
Affected systems include HP Inc’s HP Easy Start for macOS software, specifically versions prior to 2.16.7.260722. All macOS installations running these earlier releases are potentially vulnerable.
Risk and Exploitability
The vulnerability has a CVSS score of 7.7 and no EPSS information was provided, so the exploitation probability cannot be quantified. It is not listed in CISA KEV, implying no publicly known exploited instances yet. The likely attack vector, not explicitly stated in the description, is inferred to be local or user‑initiated, requiring the attacker to run malicious input through the HP Easy Start application or its privileged components.
OpenCVE Enrichment