Dell Secure Connect Gateway vulnerabilities
98 known vulnerabilities affecting dell/secure_connect_gateway.
Total CVEs
98
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH29MEDIUM50LOW13
Vulnerabilities
Page 1 of 5
CVE-2026-79689P2CRITICALCVSS 9.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-79689 [CRITICAL] CWE-78 CVE-2026-79689: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.
nvd
CVE-2026-79941P2CRITICALCVSS 9.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-79941 [CRITICAL] CWE-77 CVE-2026-79941: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.
nvd
CVE-2026-80172P2CRITICALCVSS 9.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-80172 [CRITICAL] CWE-345 CVE-2026-80172: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insufficient Verification of Data Authenticity vulnerability. An unauthenticated attacker with remote access could exploit this, leading to unauthorized access. This vulnerability is considered critical as an unauthenticated a
nvd
CVE-2026-80131P2CRITICALCVSS 9.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-07
CVE-2026-80131 [CRITICAL] CWE-22 CVE-2026-80131: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution.
nvd
CVE-2026-80129P2CRITICALCVSS 9.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-07
CVE-2026-80129 [CRITICAL] CWE-22 CVE-2026-80129: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution.
nvd
CVE-2026-80164P3CRITICALCVSS 9.1fixed in 5.36.00.00fixed in 5.36.00.162026-09-07
CVE-2026-80164 [CRITICAL] CWE-295 CVE-2026-80164: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
nvd
CVE-2026-80130P3HIGHCVSS 8.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-07
CVE-2026-80130 [HIGH] CWE-23 CVE-2026-80130: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to remote execution.
nvd
CVE-2026-79641P3HIGHCVSS 7.5fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-79641 [HIGH] CWE-78 CVE-2026-79641: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to elevation of privileges
nvd
CVE-2026-78482P3HIGHCVSS 7.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-78482 [HIGH] CWE-89 CVE-2026-78482: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.
nvd
CVE-2026-78484P3HIGHCVSS 7.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-78484 [HIGH] CWE-77 CVE-2026-78484: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.
nvd
CVE-2026-78493P3HIGHCVSS 7.8fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-78493 [HIGH] CWE-77 CVE-2026-78493: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.
nvd
CVE-2024-29168P3HIGHCVSS 8.8≥ 5.18.00.20, ≤ 5.22.00.182024-06-13
CVE-2024-29168 [HIGH] CWE-89 CVE-2024-29168: Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an i
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing potential unauthorized access and modification of applic
nvd
CVE-2024-22457P3HIGHCVSS 8.8v5.20.00.102024-03-01
CVE-2024-22457 [HIGH] CWE-290 CVE-2024-22457: Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to
Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A remote low privileged attacker could potentially exploit this vulnerability, leading to impersonation of the server through presenting a fake self-signed certificate and communicating with the remote server.
nvd
CVE-2024-48016P3HIGHCVSS 8.8v5.24.00.142024-10-18
CVE-2024-48016 [HIGH] CWE-327 CVE-2024-48016: Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken o
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken or Risky Cryptographic Algorithm vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to information disclosure. The attacker may be able to use exposed credentials to access the system with pr
nvd
CVE-2024-29169P3HIGHCVSS 8.1≥ 5.18.00.20, < 5.24.00.142024-06-13
CVE-2024-29169 [HIGH] CWE-89 CVE-2024-29169: Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an i
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal audit REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing potential unauthorized access and modification of applica
nvd
CVE-2026-79637P3HIGHCVSS 7.7fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-79637 [HIGH] CWE-295 CVE-2026-79637: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
nvd
CVE-2026-78490P3HIGHCVSS 7.5fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-78490 [HIGH] CWE-307 CVE-2026-78490: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Restriction of Excessive Authentication Attempts vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to client-side request forgery.
nvd
CVE-2026-79740P3HIGHCVSS 7.5fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-79740 [HIGH] CWE-798 CVE-2026-79740: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Credentials vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to information exposure.
nvd
CVE-2026-79738P3HIGHCVSS 7.5fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-79738 [HIGH] CWE-798 CVE-2026-79738: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Credentials vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to information exposure.
nvd
CVE-2026-78491P3HIGHCVSS 8.2fixed in 5.36.00.00fixed in 5.36.00.162026-09-09
CVE-2026-78491 [HIGH] CWE-295 CVE-2026-78491: Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
nvd
1 / 5Next →