CVE-2026-78485
published 2026-09-09CVE-2026-78485: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to…
PriorityP347high7.3CVSS 3.1
AVNACLPRNUINSUCLILAL
EPSS
0.25%
16.3th percentile
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | secure_connect_gateway | < 5.36.00.00 | 5.36.00.00 |
| dell | secure_connect_gateway | < 5.36.00.16 | 5.36.00.16 |
| dell | secure_connect_gateway_5.0_appliance | < 5.36.00.16 or later | 5.36.00.16 or later |
| dell | secure_connect_gateway_5.0_application | < 5.36.00.00 or later | 5.36.00.00 or later |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Dell Secure Connect Gateway path traversal (EUVD-2026-74848 / WID-SEC-2026-3184)
vuldb·2026-09-10·CVSS 7.3
CVE-2026-78485 [HIGH] Dell Secure Connect Gateway path traversal (EUVD-2026-74848 / WID-SEC-2026-3184)
A vulnerability, which was classified as very critical, was found in Dell Secure Connect Gateway. This affects an unknown function. Executing a manipulation can lead to path traversal.
This vulnerability is tracked as CVE-2026-78485. The attack can be launched remotely. No exploit exists.
GHSA
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'
ghsa_unreviewed·2026-09-09
CVE-2026-78485 [HIGH] CWE-22 Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-09-09
Published