Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authorization vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution. This vulnerability is considered critical because it allows an attacker to execute commands remotely on a target system by sending a specially crafted request to the application, bypassing intended restrictions on code execution.Dell recommends customers to upgrade at the earliest opportunity.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 08 Sep 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Critical Remote Code Execution via Missing Authorization in Dell Secure Connect Gateway 5.0 |
Mon, 07 Sep 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Critical Remote Code Execution via Missing Authorization in Dell Secure Connect Gateway 5.0 |
Mon, 07 Sep 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authorization vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution. This vulnerability is considered critical because it allows an attacker to execute commands remotely on a target system by sending a specially crafted request to the application, bypassing intended restrictions on code execution.Dell recommends customers to upgrade at the earliest opportunity. | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2026-09-07T12:24:53.539Z
Reserved: 2026-07-09T11:05:01.705Z
Link: CVE-2026-61410
No data.
Status : Undergoing Analysis
Published: 2026-09-07T13:20:33.853
Modified: 2026-09-08T14:14:23.790
Link: CVE-2026-61410
No data.
OpenCVE Enrichment
Updated: 2026-09-08T15:30:18Z
Weaknesses