Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Information Disclosure.
References
| Link | Resource |
|---|---|
| https://www.dell.com/support/kbdoc/en-us/000353093/dsa-2025-315 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2025-08-06 20:15
Updated : 2025-08-18 15:38
NVD link : CVE-2025-38746
Mitre link : CVE-2025-38746
CVE.ORG link : CVE-2025-38746
JSON object : View
Products Affected
dell
- supportassist_os_recovery
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
