Privilege Escalation Vulnerability in Dell SupportAssist Software
CVE-2024-52535
Key Information:
- Vendor
Dell
- Vendor
- CVE Published:
- 25 December 2024
Badges
What is CVE-2024-52535?
Dell SupportAssist for Home PCs and Business PCs contains a vulnerability related to symbolic link attacks in the software's remediation component. This issue allows low-privileged, authenticated users to exploit the vulnerability, potentially escalating their privileges. Such exploitation may result in unauthorized deletion of files and folders from affected systems, posing significant risks to data integrity. Users are urged to update to the latest versions to mitigate potential threats and enhance security.
Affected Version(s)
SupportAssist for Business PCs < 4.5.1
SupportAssist for Home PCs < 4.6.2
News Articles

Dell SupportAssist Vulnerability Let Attackers Escalate Privileges
A newly disclosed high-impact vulnerability in Dell’s widely used SupportAssist software could allow attackers to escalate privileges on affected systems.
References
CVSS V3.1
Timeline
- 👾
Exploit known to exist
- đź“°
First article discovered by CybersecurityNews
Vulnerability published
Vulnerability Reserved