CVE-2025-38747: Dell Supportassist OS Recovery
High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.
Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contain a Creation of Temporary File With Insecure Permissions vulnerability. A local authenticated attacker could potentially exploit this vulnerability, leading to Elevation of Privileges.
Affected products
- Dell Supportassist OS Recovery: before 5.5.14.0 (fixed in 5.5.14.0)
Published 2025-08-06. Last modified 2026-06-17.