CVE-2025-46685: Dell Supportassist OS Recovery

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

Affected products

  • Dell Supportassist OS Recovery: before 5.5.15.1 (fixed in 5.5.15.1)

Published 2026-01-13. Last modified 2026-06-17.