PatchSiren

Dell CVE debriefs · Page 3

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Dell CVE published 2026-09-09

CVE-2026-79728

CVE-2026-79728 is a Relative Path Traversal vulnerability affecting Dell Secure Connect Gateway (SCG) versions prior to 5.36.00.16 for appliances and 5.36.00.00 for applications. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to filesystem access. This vulnerability allows attackers to traverse the file system, potentially leading to unauthorized acces [truncated]

MEDIUM Dell CVE published 2026-09-09

CVE-2026-79970

Dell Secure Connect Gateway (SCG) versions prior to 5.36.00.16 for virtual editions and versions prior to 5.36.00.00 for application editions are vulnerable to an Improper Verification of Cryptographic Signature vulnerability. This vulnerability could allow an unauthenticated attacker with remote access to potentially bypass protection mechanisms. The vulnerability affects Dell SCG systems, which are used [truncated]

MEDIUM Dell CVE published 2026-09-09

CVE-2026-79730

Dell Secure Connect Gateway (SCG) versions prior to 5.36.00.16 (virtual) and 5.36.00.00 (application) are vulnerable to a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service. The vulnerability exists in the SCG's handling of concurrent requests, allowing an attacker to man [truncated]

HIGH Dell CVE published 2026-09-09

CVE-2026-79695

Dell Secure Connect Gateway (SCG) versions prior to 5.36.00.16 and 5.36.00.00 are vulnerable to a Data Amplification issue, a form of Improper Handling of Highly Compressed Data. An unauthenticated attacker with remote access could exploit this, leading to denial of service. This issue affects Dell SCG deployments, which require immediate attention to prevent potential disruptions. Defenders should assess [truncated]

MEDIUM Dell CVE published 2026-09-09

CVE-2026-80174

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Insufficient Session Expiration vulnerability. A low-privileged attacker with remote access could potentially exploit this vulnerability, leading to session theft. This issue affects Dell SCG deployments, which require verification of version numbers and updates [truncated]

HIGH Dell CVE published 2026-09-09

CVE-2026-79635

Dell Secure Connect Gateway (SCG) versions prior to 5.36.00.16 for virtual edition and versions prior to 5.36.00.00 for application edition are vulnerable to a Server-Side Request Forgery (SSRF) attack. This vulnerability allows an unauthenticated attacker with remote access to potentially exploit the vulnerability, leading to unauthorized access. The vulnerability affects Dell SCG deployments, and defend [truncated]

LOW Dell CVE published 2026-09-09

CVE-2026-80175

Dell Secure Connect Gateway (SCG) versions prior to 5.36.00.16 and 5.36.00.00 contain an Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure. The vulnerability exists in Dell SCG versions prior to 5.36.00.16 and 5.36.00.00, allowing a low-priv [truncated]

HIGH Dell CVE published 2026-09-09

CVE-2026-78491

Dell Secure Connect Gateway (SCG) versions prior to 5.36.00.16 for virtual edition and versions prior to 5.36.00.00 for application edition are vulnerable to an Improper Certificate Validation vulnerability. This vulnerability could potentially allow an unauthenticated attacker with remote access to exploit the vulnerability, leading to unauthorized access.

MEDIUM Dell CVE published 2026-09-09

CVE-2026-80124

A low-privileged attacker with local access could potentially exploit the Insertion of Sensitive Information into Log File vulnerability in Dell Secure Connect Gateway (SCG) versions prior to 5.36.00.16 (appliance) and 5.36.00.00 (application), leading to information exposure. This vulnerability allows attackers to access sensitive information through log files, which could lead to further exploitation. D [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80176

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain a Plaintext Storage of a Password vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information disclosure. The vulnerability affects system administrators and security teams responsible for Dell SCG 5.0 Appliance and Applic [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80167

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Use of Hard-coded Cryptographic Key vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information disclosure. The vulnerability is considered medium severity with a CVSS score of 5.5. Dell SCG 5.0 Appliance and Applicatio [truncated]

HIGH Dell CVE published 2026-09-07

CVE-2026-80166

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Improper Privilege Management vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges. This vulnerability affects Dell SCG 5.0 Appliance and Application deployments, particular [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80126

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Improper Locking vulnerability. A low-privileged attacker with remote access could potentially exploit this vulnerability, leading to filesystem access. This vulnerability affects Dell SCG 5.0 Appliance and Application deployments, which defenders should assess [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80125

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. This medium-severity vulnerability allows for unauthorized access due to improper certificate validation. IT admin [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80058

A low-privileged attacker with local access could potentially exploit the Cleartext Storage of Sensitive Information vulnerability in Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, leading to information exposure. This vulnerability allows attackers to access sensitive information, which could have significant implications for the security of [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-79975

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Improper Certificate Validation vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to server-side request forgery. This vulnerability exists in the certificate validation process of Dell SCG 5.0 Appliance and Application, whi [truncated]

HIGH Dell CVE published 2026-09-07

CVE-2026-79639

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. This vulnerability affects Dell SCG 5.0 Appliance and Application deployments, requiring defenders to assess exposu [truncated]

HIGH Dell CVE published 2026-09-07

CVE-2026-80127

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an OS Command Injection vulnerability. A high-privileged attacker with remote access could potentially exploit this vulnerability, leading to elevation of privileges. This vulnerability is a high-severity issue that requires immediate attention from system administ [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80054

CVE-2026-80054 is a medium-severity vulnerability in Dell SCG 5.0 Appliance and Dell SCG 5.0 Application that could lead to unauthorized access. A low privileged attacker with local access could potentially exploit this vulnerability. Defenders should assess exposure and prioritize patching. The vulnerability is caused by an Incorrect Permission Assignment for Critical Resource. Dell SCG 5.0 Appliance ver [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-79943

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Improper Validation of Certificate with Host Mismatch vulnerability. This vulnerability allows an unauthenticated attacker with remote access to potentially exploit the vulnerability, leading to protection mechanism bypass. The affected products are Dell SCG 5.0 [truncated]

HIGH Dell CVE published 2026-09-07

CVE-2026-79691

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass. This vulnerability allows for potential security risks, including unauthorized acc [truncated]

HIGH Dell CVE published 2026-09-07

CVE-2026-79643

CVE-2026-79643 debrief based on the supplied source corpus. Dell SCG 5.0 Appliance and Application versions prior to 5.36.00.16 and 5.36.00.00 are affected by a Use of Incorrect Operator vulnerability, potentially leading to unauthorized access. Defenders should assess exposure and verify versions. The CVE record and NVD entry provide limited information about the vulnerability, emphasizing the need for f [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-79642

CVE-2026-79642 is an Improper Certificate Validation vulnerability in Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. Defenders should assess exposure, prioritize remediation, and verify certificate validation mechanisms [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80057

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain a Use of Hard-coded Cryptographic Key vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to information disclosure. The vulnerability exists in the Dell SCG 5.0 Appliance and Application, which are used [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80056

A low-privileged attacker with local access could potentially exploit the Insertion of Sensitive Information into Log File vulnerability in Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, leading to information exposure. This vulnerability allows attackers to access sensitive information through log files, emphasizing the need for defenders to [truncated]

HIGH Dell CVE published 2026-09-07

CVE-2026-79645

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. This vulnerability affects Dell SCG 5.0 deployments, and defenders should asse [truncated]

HIGH Dell CVE published 2026-09-07

CVE-2026-79644

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. The vulnerability affects Dell SCG 5.0 systems, which are used for secure connectivity and [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-78488

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain an OS Command Injection vulnerability. A low-privileged attacker with remote access could potentially exploit this vulnerability, leading to command execution. This vulnerability has a medium severity and requires immediate attention from system administrators and [truncated]

HIGH Dell CVE published 2026-09-07

CVE-2026-78480

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. This vulnerability is considered high-severity and defenders should prioritize [truncated]

MEDIUM Dell CVE published 2026-09-07

CVE-2026-80170

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00 contain a Use of Hard-coded Credentials vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass. This vulnerability exists in the Dell SCG 5.0 systems, affecting their security postu [truncated]