Medium severity6.3NVD Advisory· Published Oct 13, 2025· Updated Jun 17, 2026
CVE-2025-43991
CVE-2025-43991
Description
SupportAssist for Home PCs versions 4.8.2 and prior and SupportAssist for Business PCs versions 4.5.3 and prior, contain an UNIX Symbolic Link (Symlink) following vulnerability. A low privileged attacker with local access to the system could potentially exploit this vulnerability to delete arbitrary files only in that affected system.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:dell:supportassist_for_business_pcs:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:dell:supportassist_for_business_pcs:*:*:*:*:*:*:*:*range: <4.5.3.25254
- (no CPE)range: <=4.5.3
cpe:2.3:a:dell:supportassist_for_home_pcs:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:dell:supportassist_for_home_pcs:*:*:*:*:*:*:*:*range: <4.8.2.29006
- (no CPE)range: <=4.8.2
- (no CPE)range: N/A
- (no CPE)range: N/A
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.