OS Command Injection Vulnerability in Dell SCG 5.0 Appliance and Application
CVE-2026-79947

5.5MEDIUM

What is CVE-2026-79947?

The Dell SCG 5.0 Appliance and Application prior to designated versions are susceptible to an OS Command Injection vulnerability. An attacker with low privileges and local access may exploit this flaw to perform script injection, which could compromise system integrity and lead to unauthorized command execution within the application environment.

Affected Version(s)

Secure Connect Gateway 5.0 - Appliance 0 < 5.36.00.16 or later

Secure Connect Gateway 5.0 - Application 0 < 5.36.00.00 or later

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.