CVE-2016-2245 describes a critical authentication bypass vulnerability in HP Support Assistant versions prior to 8.1.52.1. This flaw allows remote attackers to gain unauthorized access without requiring user interaction, posing a significant risk to confidentiality, integrity, and availability. With a CVSS score of 9.8, it represents a severe threat, though there is no evidence of active exploitation or public exploit code. Despite the lack of current exploitation, the vulnerability has garnered considerable community discussion, indicating awareness within the cybersecurity landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 8.1.40.3CPE matchmatch criteria | cpe:2.3:a:hp:support_assistant:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.