CVE-2025-43991

SupportAssist for Home PCs versions 4.8.2 and prior and SupportAssist for Business PCs versions 4.5.3 and prior, contain an UNIX Symbolic Link (Symlink) following vulnerability. A low privileged attacker with local access to the system could potentially exploit this vulnerability to delete arbitrary files only in that affected system.
Configurations

No configuration.

History

13 Oct 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-13 15:16

Updated : 2025-10-14 19:36


NVD link : CVE-2025-43991

Mitre link : CVE-2025-43991

CVE.ORG link : CVE-2025-43991


JSON object : View

Products Affected

No product.

CWE
CWE-61

UNIX Symbolic Link (Symlink) Following