Dell SupportAssist OS Recovery Temporary File Insecure Permissions Vulnerability Allowing Privilege Escalation

Vulnerability

A vulnerability exists in Dell SupportAssist OS Recovery versions prior to 5.5.15.1, allowing low-privileged attackers with local access to create temporary files with insecure permissions. This could potentially be exploited to elevate privileges.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation.

Remediation

Users can update to Dell SupportAssist OS Recovery version 5.5.15.1 or later. To verify the current version, check the 'Programs and Features' section in the Control Panel. If the version is lower than 5.5.15.1, launch the Dell SupportAssist application, check for updates, and install the latest version.

Added: Jan 13, 2026, 5:32 PM
Updated: Jan 13, 2026, 5:32 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
3.3
remediation
7.7
relevance
2.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.