Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to script injection.
Metrics
Affected Vendors & Products
References
History
Wed, 09 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell secure Connect Gateway |
|
| CPEs | cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:application:*:*:* cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:virtual:*:*:* |
|
| Vendors & Products |
Dell
Dell secure Connect Gateway |
Wed, 09 Sep 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 09 Sep 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper SQL Injection in Dell Secure Connect Gateway 5.0 Allowing Script Injection via Remote Access |
Wed, 09 Sep 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to script injection. | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published: 2026-09-09T07:51:03.464Z
Updated: 2026-09-09T16:02:32.785Z
Reserved: 2026-08-25T21:04:22.135Z
Link: CVE-2026-80177
Updated: 2026-09-09T15:49:47.935Z
Status : Analyzed
Published: 2026-09-09T08:17:22.627
Modified: 2026-09-09T20:15:32.870
Link: CVE-2026-80177
No data.