CVE-2025-38746

Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Information Disclosure.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:supportassist_os_recovery:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-08-06 20:15

Updated : 2025-08-18 15:38


NVD link : CVE-2025-38746

Mitre link : CVE-2025-38746

CVE.ORG link : CVE-2025-38746


JSON object : View

Products Affected

dell

  • supportassist_os_recovery
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor