Home

Description

SupportAssist for Business PCs, version(s) 4.5.3 and prior, contain(s) an Incorrect Privilege Assignment vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges.

PUBLISHED Reserved 2025-04-15 | Published 2025-08-14 | Updated 2025-08-15 | Assigner dell




MEDIUM: 6.7CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

Problem types

CWE-266: Incorrect Privilege Assignment

Product status

Default status
unaffected

Any version before 4.9.0
affected

Credits

Dell would like to thank Ouallaout Noureddine for reporting this issue. finder

References

www.dell.com/...pportassist-for-business-pcs-vulnerabilities vendor-advisory

cve.org (CVE-2025-36612)

nvd.nist.gov (CVE-2025-36612)

Download JSON