Relative Path Traversal Vulnerability in Dell Secure Connect Gateway
CVE-2025-46363
4.3MEDIUM
Key Information:
- Vendor
Dell
- Vendor
- CVE Published:
- 30 October 2025
What is CVE-2025-46363?
The Dell Secure Connect Gateway versions 5.26.00.00 to 5.30.00.00 are susceptible to a relative path traversal vulnerability via an internal REST API. If enabled by an administrator, this API exposes access points that a low privileged attacker could exploit. Successful exploitation may allow unauthorized access to restricted resources within the system, potentially compromising sensitive data.
Affected Version(s)
Secure Connect Gateway SCG 5.0 Application and Appliance 5.26.00 < 5.32.00
References
CVSS V3.1
Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Dell would like to thank Ahmed Y. Elmogy for reporting this issue.