📦 Supportassist For Business Pcs

by Dell

🔍 What is Supportassist For Business Pcs?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-44283

HIGH CVSS 7.8 Feb 14, 2024

This vulnerability in Dell SupportAssist allows locally authenticated users to escalate privileges and execute arbitrary code with Windows system-level permissions on their own PC. It affects both Hom...

CVE-2022-34388

HIGH CVSS 7.1 Feb 11, 2023

This vulnerability allows local low-privileged users to view and modify sensitive information in Dell SupportAssist's database. It affects both Home and Business PC versions of Dell SupportAssist. The...

CVE-2022-34384

HIGH CVSS 7.8 Feb 11, 2023

This CVE describes a local privilege escalation vulnerability in Dell's Advanced Driver Restore component. A local malicious user can exploit this to gain elevated privileges on affected systems. The ...

CVE-2022-29092

HIGH CVSS 7.8 Jun 10, 2022

Dell SupportAssist contains a privilege escalation vulnerability where non-admin users can gain admin access to the system. This affects both Consumer and Commercial versions of the software on Window...

CVE-2022-29094

HIGH CVSS 7.1 Jun 10, 2022

This vulnerability allows authenticated non-admin users to delete or overwrite arbitrary files on systems running vulnerable versions of Dell SupportAssist. It affects both consumer and commercial ver...

CVE-2020-5316

HIGH CVSS 7.8 Jul 22, 2021

This vulnerability allows a locally authenticated low-privileged user to load arbitrary DLLs through Dell SupportAssist, leading to privilege escalation and execution of arbitrary code with elevated p...

CVE-2021-21518

HIGH CVSS 7.8 Mar 12, 2021

This CVE describes a DLL injection vulnerability in Dell SupportAssist software that allows local low-privileged users to execute arbitrary code with SYSTEM privileges. The vulnerability exists in the...

CVE-2025-36612

MEDIUM CVSS 6.7 Aug 14, 2025

Dell SupportAssist for Business PCs versions 4.5.3 and earlier contain an incorrect privilege assignment vulnerability (CWE-266). A local attacker with low privileges can exploit this to elevate their...