CVE-2025-38747

CVE Details

Basic Information

Title CVE-2025-38747
Type cve
Published 2025-08-06T19:48:46.676Z
Modified 2025-08-06T19:56:58.198Z

Product Information

Vendor Dell
Product SupportAssist OS Recovery
Version N/A

CVSS Information

Base Score 7.8 (HIGH)
Attack Vector CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Analysis

AI Description A vulnerability in Dell SupportAssist OS Recovery allows local authenticated attackers to create temporary files with insecure permissions, potentially leading to privilege escalation.
AI Severity High
AI Vendor Dell
AI Product SupportAssist OS Recovery
AI Version Versions prior to 5.5.14.0

Affected Products

  • Dell SupportAssist OS Recovery N/A

Additional Information

CWE List CWE-378
Source dell

Description

Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contain a Creation of Temporary File With Insecure Permissions vulnerability. A local authenticated attacker could potentially exploit this vulnerability, leading to Elevation of Privileges.

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.