Dell Support Assist OS Recovery Authentication Bypass Vulnerability

Dell Support Assist OS Recovery Authentication Bypass Vulnerability

CVE-2022-26865 · MEDIUM Severity

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Dell Support Assist OS Recovery versions before 5.5.2 contain an Authentication Bypass vulnerability. An unauthenticated attacker with physical access to the system may exploit this vulnerability by bypassing OS Recovery authentication in order to run arbitrary code on the system as Administrator.

Learn more about our Physical Security Assessment.