CVE-2026-79741

Summary

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.

Affected Software

VendorProductVersion RangeStatus
DellSecure Connect Gateway 5.0 - Application0 < 5.36.00.00 or lateraffected
DellSecure Connect Gateway 5.0 - Appliance0 < 5.36.00.16 or lateraffected

Weaknesses

  • CWE-77: CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection')

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References