CVE-2025-38747: Dell Supportassist OS Recovery

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contain a Creation of Temporary File With Insecure Permissions vulnerability. A local authenticated attacker could potentially exploit this vulnerability, leading to Elevation of Privileges.

Affected products

  • Dell Supportassist OS Recovery: before 5.5.14.0 (fixed in 5.5.14.0)

Published 2025-08-06. Last modified 2026-06-17.