CVE Vulnerabilities

CVE-2022-38396

Published: Feb 12, 2023 | Modified: Mar 25, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

HP Factory Preinstalled Images on certain systems that shipped with Windows 10 versions 20H2 and earlier OS versions might allow escalation of privilege via execution of certain files outside the restricted path. This potential vulnerability was remediated starting with Windows 10 versions 21H2 on October 31, 2021.

Affected Software

NameVendorStart VersionEnd Version
Windows_10_1507Microsoft- (including)- (including)
Windows_10_1511Microsoft- (including)- (including)
Windows_10_1607Microsoft- (including)- (including)
Windows_10_1703Microsoft- (including)- (including)
Windows_10_1709Microsoft- (including)- (including)
Windows_10_1803Microsoft- (including)- (including)
Windows_10_1809Microsoft- (including)- (including)
Windows_10_1909Microsoft- (including)- (including)
Windows_10_2004Microsoft- (including)- (including)
Windows_10_20h2Microsoft- (including)- (including)

References