CVE-2026-12554
Received Received - Intake

Privilege Escalation in HP Easy Start for macOS

Vulnerability report for CVE-2026-12554, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-24

Last updated on: 2026-08-24

Assigner: HP Inc.

Description

Potential security vulnerabilities have been identified in HP Easy Start for macOS, versions prior to 2.16.7.260722. These potential vulnerabilities may lead to escalation of privilege. HP is releasing updates to mitigate these potential vulnerabilities.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-24
Last Modified
2026-08-24
Generated
2026-08-24
AI Q&A
2026-08-24
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
hp easy_start to 2.16.7.260722 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-1104 The product relies on third-party components that are not actively supported or maintained by the original developer or a trusted proxy for the original developer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is in HP Easy Start for macOS versions before 2.16.7.260722. It may allow an attacker to gain higher privileges on the system than intended.

Detection Guidance

Detection of this vulnerability requires checking the version of HP Easy Start installed on macOS systems. Compare the installed version against 2.16.7.260722. If the version is prior to this, the system is potentially vulnerable. No specific commands are provided in the context for detection.

Impact Analysis

If exploited, this vulnerability could let an attacker take control of your system, install malicious software, or access sensitive data. It may also allow them to perform actions with elevated permissions.

Compliance Impact

This vulnerability could lead to unauthorized access or data breaches, which may violate GDPR or HIPAA requirements for data protection and security. Organizations using affected versions may face compliance risks.

Mitigation Strategies

Update HP Easy Start for macOS to version 2.16.7.260722 or later to address potential privilege escalation vulnerabilities.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-12554. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart