CVE-2022-26865

Dell Support Assist OS Recovery versions before 5.5.2 contain an Authentication Bypass vulnerability. An unauthenticated attacker with physical access to the system may exploit this vulnerability by bypassing OS Recovery authentication in order to run arbitrary code on the system as Administrator.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:supportassist_os_recovery:5.5.1:*:*:*:*:*:*:*

Information

Published : 2022-05-26 09:15

Updated : 2022-06-07 11:58


NVD link : CVE-2022-26865

Mitre link : CVE-2022-26865


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

dell

  • supportassist_os_recovery