Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2841▼ 157 respecto a la semana anterior
Críticas / altas1370▲ 51 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 258 respecto a la semana anterior
38 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.8) | 0.10% | — | Dell Supportassist OS Recovery | 13/1/2026 | 17/6/2026 | Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges. | |
| Analizada | Media (5.5) | 0.11% | — | Dell Supportassist OS Recovery | 13/1/2026 | 17/6/2026 | Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information Tampering. | |
| Analizada | Media (5.5) | 0.11% | — | Dell Supportassist OS Recovery | 27/10/2025 | 17/6/2026 | Dell SupportAssist OS Recovery, versions prior to 5.5.15.0, contain an Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure. | |
| Analizada | Alta (7.1) | 0.13% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 13/10/2025 | 17/6/2026 | SupportAssist for Home PCs versions 4.8.2 and prior and SupportAssist for Business PCs versions 4.5.3 and prior, contain an UNIX Symbolic Link (Symlink) following vulnerability. A low privileged attacker with local access to the system could potentially exploit this vulnerability to delete arbitrary files only in that… | |
| Analizada | Alta (7.8) | 0.11% | — | Dell Supportassist FOR Home PCS | 14/8/2025 | 17/6/2026 | SupportAssist for Home PCs Installer exe version(s) 4.8.2.29006 and prior, contain(s) an Incorrect Privilege Assignment vulnerability in the Installer. A low privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges. | |
| Analizada | Alta (7.8) | 0.11% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 14/8/2025 | 17/6/2026 | SupportAssist for Home PCs versions 4.6.3 and prior and SupportAssist for Business PCs versions 4.5.3 and prior, contain(s) an Incorrect Privilege Assignment vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to unauthorized access. | |
| Analizada | Alta (7.8) | 0.10% | — | Dell Supportassist FOR Business PCS | 14/8/2025 | 17/6/2026 | SupportAssist for Business PCs, version(s) 4.5.3 and prior, contain(s) an Incorrect Privilege Assignment vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges. | |
| Analizada | Alta (7.8) | 0.15% | — | Dell Supportassist OS Recovery | 6/8/2025 | 17/6/2026 | Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contain a Creation of Temporary File With Insecure Permissions vulnerability. A local authenticated attacker could potentially exploit this vulnerability, leading to Elevation of Privileges. | |
| Analizada | Baja (2.4) | 0.18% | — | Dell Supportassist OS Recovery | 6/8/2025 | 17/6/2026 | Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Information Disclosure. | |
| Analizada | Alta (7.8) | 0.18% | — | Dell Supportassist OS Recovery | 13/2/2025 | 17/6/2026 | Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary file deletion and Elevation of Privileges. | |
| Analizada | Alta (8.8) | 0.55% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 25/12/2024 | 17/6/2026 | Dell SupportAssist for Home PCs versions 4.6.1 and prior and Dell SupportAssist for Business PCs versions 4.5.0 and prior, contain a symbolic link (symlink) attack vulnerability in the software remediation component. A low-privileged authenticated user could potentially exploit this vulnerability, gaining privileges… | |
| Analizada | Alta (7.3) | 0.32% | — | Dell Supportassist FOR Home PCS | 21/8/2024 | 17/6/2026 | Dell SupportAssist for Home PCs Installer exe version 4.0.3 contains a privilege escalation vulnerability in the installer. A local low-privileged authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary executables on the operating system with elevated privileges. | |
| Modificada | Alta (7.8) | 0.24% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 14/2/2024 | 17/6/2026 | In Dell SupportAssist for Home PCs (between v3.0 and v3.14.1) and SupportAssist for Business PCs (between v3.0 and v3.4.1), a security concern has been identified, impacting locally authenticated users on their respective PCs. This issue may potentially enable privilege escalation and the execution of arbitrary code,… | |
| Modificada | Media (5.3) | 0.32% | — | Dell Supportassist FOR Home PCS | 14/2/2024 | 17/6/2026 | Dell SupportAssist for Business PCs version 3.4.0 contains a local Authentication Bypass vulnerability that allows locally authenticated non-admin users to gain temporary privilege within the SupportAssist User Interface on their respective PC. The Run as Admin temporary privilege feature enables IT/System… | |
| Modificada | Media (6.5) | 0.20% | — | Dell Supportassist FOR Home PCS | 14/2/2024 | 17/6/2026 | Dell SupportAssist for Home PCs Installer Executable file version prior to 3.13.2.19 used for initial installation has a high vulnerability that can result in local privilege escalation (LPE). This vulnerability only affects first-time installations done prior to 8th March 2023 | |
| Modificada | Alta (7.8) | 0.24% | — | Dell Supportassist FOR Home PCS | 22/12/2023 | 17/6/2026 | Dell SupportAssist for Home PCs version 3.14.1 and prior versions contain a privilege escalation vulnerability in the installer. A local low privileged authenticated attacker may potentially exploit this vulnerability, leading to the execution of arbitrary executable on the operating system with elevated privileges. | |
| Modificada | Media (5.5) | 0.16% | — | Dell Supportassist FOR Home PCS | 11/2/2023 | 17/6/2026 | SupportAssist for Home PCs (versions 3.11.4 and prior) contain an insufficient session expiration Vulnerability. An authenticated non-admin user can be able to obtain the refresh token and that leads to reuse the access token and fetch sensitive information. | |
| Modificada | Media (5.3) | 0.44% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 11/2/2023 | 17/6/2026 | Dell SupportAssist contains a rate limit bypass issues in screenmeet API third party component. An unauthenticated attacker could potentially exploit this vulnerability and impersonate a legitimate dell customer to a dell support technician. | |
| Modificada | Alta (7.1) | 0.16% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 11/2/2023 | 17/6/2026 | Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain information disclosure vulnerability. A local malicious user with low privileges could exploit this vulnerability to view and modify sensitive information in the database of the affected… | |
| Modificada | Alta (7.8) | 0.15% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 11/2/2023 | 17/6/2026 | Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain a privilege escalation vulnerability. A local authenticated malicious user could potentially exploit this vulnerability to elevate privileges and gain total control of the system. | |
| Modificada | Media (5.5) | 0.17% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 11/2/2023 | 17/6/2026 | Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weakness vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information. | |
| Modificada | Media (5.5) | 0.13% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 11/2/2023 | 17/6/2026 | SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weakness vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information. | |
| Modificada | Alta (7.8) | 0.23% | — | Dell Alienware UpdateDell Command UpdateDell Supportassist FOR Business PCSDell Supportassist FOR Home PCS+1 | 11/2/2023 | 17/6/2026 | Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell Update, and Alienware Update versions before 4.5 contain a Local Privilege Escalation Vulnerability in the Advanced Driver Restore component. A local malicious user may… | |
| Modificada | Media (6.5) | 0.52% | — | Dell Supportassist FOR Home PCS | 10/2/2023 | 17/6/2026 | Dell SupportAssist for Home PCs (version 3.11.2 and prior) contain Overly Permissive Cross-domain Whitelist vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information. | |
| Modificada | Crítica (9.6) | 1.2% | — | Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS | 10/6/2022 | 17/6/2026 | Dell SupportAssist Client Consumer versions (3.10.4 and prior) and Dell SupportAssist Client Commercial versions (3.1.1 and prior) contain a cross-site scripting vulnerability. A remote unauthenticated malicious user could potentially exploit this vulnerability under specific conditions leading to execution of… |