CVE-2026-79638

Summary

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Alternate XSS Syntax vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.

Affected Software

VendorProductVersion RangeStatus
DellSecure Connect Gateway 5.0 - Application0 < 5.36.00.00 or lateraffected
DellSecure Connect Gateway 5.0 - Appliance0 < 5.36.00.16 or lateraffected

Weaknesses

  • CWE-693: CWE-693: Protection Mechanism Failure

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References