Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
Metrics
Affected Vendors & Products
References
History
Wed, 09 Sep 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell secure Connect Gateway |
|
| CPEs | cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:application:*:*:* cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:virtual:*:*:* |
|
| Vendors & Products |
Dell
Dell secure Connect Gateway |
Wed, 09 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 09 Sep 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SQL Injection in Dell Secure Connect Gateway 5.0 Leading to Unauthorized Access |
Wed, 09 Sep 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published: 2026-09-09T08:26:27.831Z
Updated: 2026-09-09T12:58:19.264Z
Reserved: 2026-08-25T10:35:45.860Z
Link: CVE-2026-79640
Updated: 2026-09-09T12:58:15.840Z
Status : Analyzed
Published: 2026-09-09T09:17:11.103
Modified: 2026-09-09T19:45:06.570
Link: CVE-2026-79640
No data.