Temp File Insecure Permissions in Dell SupportAssist OS Recovery <=5.5.15.1
CVE-2025-46684 Published on January 13, 2026
Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information Tampering.
Vulnerability Analysis
CVE-2025-46684 is exploitable with local system access, requires user interaction and a small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality, a high impact on integrity and availability.
Weakness Type
Creation of Temporary File With Insecure Permissions
Opening temporary files without appropriate measures or controls can leave the file, its contents and any function that it impacts vulnerable to attack.
Products Associated with CVE-2025-46684
Want to know whenever a new CVE is published for Dell Supportassist Os Recovery? stack.watch will email you.
Affected Versions
Dell SupportAssist OS Recovery,:- Before 5.5.15.1 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.