Fiche vulnérabilité
CVE-2025-43991 : faille élevée dell supportassist for business pcs (CVSS 7.1)
Description
SupportAssist for Home PCs versions 4.8.2 and prior and SupportAssist for Business PCs versions 4.5.3 and prior, contain an UNIX Symbolic Link (Symlink) following vulnerability. A low privileged attacker with local access to the system could potentially exploit this vulnerability to delete arbitrary files only in that affected system.
En bref
- Sévérité
- Élevée (CVSS 7.1)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 13 oct. 2025
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- dell supportassist for business pcs
- dell supportassist for home pcs