CVE-2025-38746: Dell Supportassist OS Recovery
Low severity, CVSS 2.4. EPSS: 0.2% chance of exploitation in the next 30 days.
Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Information Disclosure.
Affected products
- Dell Supportassist OS Recovery: before 5.5.14.0 (fixed in 5.5.14.0)
Published 2025-08-06. Last modified 2026-06-17.