← Vulnerability feed

Vulnerability record · CVE-2025-22480 · published 13 February 2025

CVE-2025-22480: Dell supportassist os recovery link following vulnerability

Dell · Supportassist Os Recovery

Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary file deletion and Elevation of Privileges.

7.8 CVSS 3.1 High EPSS 0.18% · top 93.4% CWE-61 · CWE-61CWE-59 · Link following
7.8CVSS 3.1 base score
0.18%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
17 Jun 2026Last modified by NVD

Description

Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary file deletion and Elevation of Privileges.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2025-22480 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2025-46685Dell supportassist os recovery vulnerabilityDell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissions vulnerability. A low privi…EPSS 0.10%7.8CVE-2025-38747Dell supportassist os recovery vulnerabilityDell SupportAssist OS Recovery, versions prior to 5.5.14.0, contain a Creation of Temporary File With Insecure Permissions vulnerability. A local aut…EPSS 0.15%6.8CVE-2022-26865Dell supportassist os recovery authentication bypass via alternate path vulnerabilityDell Support Assist OS Recovery versions before 5.5.2 contain an Authentication Bypass vulnerability. An unauthenticated attacker with physical acces…EPSS 0.30%5.5CVE-2025-46684Dell supportassist os recovery vulnerabilityDell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissions vulnerability. A low privi…EPSS 0.11%5.5CVE-2025-46602Dell supportassist os recovery vulnerabilityDell SupportAssist OS Recovery, versions prior to 5.5.15.0, contain an Insertion of Sensitive Information into Externally-Accessible File or Director…EPSS 0.11%2.4CVE-2025-38746Dell supportassist os recovery information exposure vulnerabilityDell SupportAssist OS Recovery, versions prior to 5.5.14.0, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability. An …EPSS 0.18%8.5CVE-2026-54420LiteSpeed cPanel plugin symlink following on shared hostingThe LiteSpeed cPanel plugin before 2.4.8 (and LiteSpeed WHM PlugIn before 5.3.2.0) mishandles symlinks supplied by a user who has FTP or web shell ac…KEVEPSS 0.81%analysed9.8CVE-2025-58360GeoServer WMS GetMap XXE allows unauthenticated file read and SSRFGeoServer versions 2.26.0 through 2.26.2 and before 2.25.6 accept XML input at the /geoserver/wms GetMap endpoint without sufficiently restricting ex…KEVEPSS 61%analysed

Source: NIST National Vulnerability Database (record CVE-2025-22480), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.