CVE-2026-79964

Summary

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Escape, Meta, or Control Sequences vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to launch of phishing attacks.

Affected Software

VendorProductVersion RangeStatus
DellSecure Connect Gateway 5.0 - Application0 < 5.36.00.00 or lateraffected
DellSecure Connect Gateway 5.0 - Appliance0 < 5.36.00.16 or lateraffected

Weaknesses

  • CWE-116: CWE-116: Improper Encoding or Escaping of Output

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References