Command Injection Vulnerability in Dell SCG 5.0 Appliance and Application
CVE-2026-79941

5.3MEDIUM

What is CVE-2026-79941?

The Dell SCG 5.0 Appliance and Application are susceptible to a command injection vulnerability due to improper neutralization of special elements used in a command. This flaw allows an unauthenticated attacker with remote access to exploit the system, potentially leading to unauthorized script execution. Users of vulnerable versions are strongly advised to upgrade to the latest releases to mitigate this risk.

Affected Version(s)

Secure Connect Gateway 5.0 - Appliance 0 < 5.36.00.16 or later

Secure Connect Gateway 5.0 - Application 0 < 5.36.00.00 or later

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.