CVE-2025-13492

A potential security vulnerability has been identified in HP Image Assistant for versions prior to 5.3.3. The vulnerability could potentially allow a local attacker to escalate privileges via a race condition when installing packages.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hp:image_assistant:*:*:*:*:*:*:*:*

History

05 Dec 2025, 23:51

Type Values Removed Values Added
First Time Hp image Assistant
Hp
CPE cpe:2.3:a:hp:image_assistant:*:*:*:*:*:*:*:*
References () https://support.hp.com/us-en/document/ish_13505078-13505143-16/hpsbgn04078 - () https://support.hp.com/us-en/document/ish_13505078-13505143-16/hpsbgn04078 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.0

03 Dec 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-03 17:15

Updated : 2025-12-05 23:51


NVD link : CVE-2025-13492

Mitre link : CVE-2025-13492

CVE.ORG link : CVE-2025-13492


JSON object : View

Products Affected

hp

  • image_assistant
CWE
CWE-363

Race Condition Enabling Link Following