CVE-2026-78492
published 2026-09-09CVE-2026-78492: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation…
PriorityP348high7.4CVSS 3.1
AVNACHPRNUINSUCHIHAN
EPSS
0.18%
8.2th percentile
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | secure_connect_gateway | < 5.36.00.00 | 5.36.00.00 |
| dell | secure_connect_gateway | < 5.36.00.16 | 5.36.00.16 |
| dell | secure_connect_gateway_5.0_appliance | < 5.36.00.16 or later | 5.36.00.16 or later |
| dell | secure_connect_gateway_5.0_application | < 5.36.00.00 or later | 5.36.00.00 or later |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Dell Secure Connect Gateway prior 5.36.00.16/5.36.00.00 certificate validation (WID-SEC-2026-3184)
vuldb·2026-09-10·CVSS 7.4
CVE-2026-78492 [HIGH] Dell Secure Connect Gateway prior 5.36.00.16/5.36.00.00 certificate validation (WID-SEC-2026-3184)
A vulnerability was found in Dell Secure Connect Gateway. It has been rated as problematic. This affects an unknown part. Performing a manipulation results in improper certificate validation.
This vulnerability is reported as CVE-2026-78492. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.
GHSA
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability.
ghsa_unreviewed·2026-09-09
CVE-2026-78492 [HIGH] CWE-295 Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability.
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-09-09
Published