CVE-2025-43991: Dell Supportassist For Business Pcs

High severity, CVSS 7.1. EPSS: 0.1% chance of exploitation in the next 30 days.

SupportAssist for Home PCs versions 4.8.2 and prior and SupportAssist for Business PCs versions 4.5.3 and prior, contain an UNIX Symbolic Link (Symlink) following vulnerability. A low privileged attacker with local access to the system could potentially exploit this vulnerability to delete arbitrary files only in that affected system.

Affected products

  • Dell Supportassist For Business Pcs: before 4.5.3.25254 (fixed in 4.5.3.25254)
  • Dell Supportassist For Home Pcs: before 4.8.2.29006 (fixed in 4.8.2.29006)

Published 2025-10-13. Last modified 2026-06-17.