CVE-2021-36340: High severity Dell Emc Secure Connect Gateway vulnerability
Published Nov 20, 2021
·Updated
Dell EMC SCG 5.00.00.10 and earlier, contain a sensitive information disclosure vulnerability. A local malicious user may exploit this vulnerability to read sensitive information and use it.
Affected Software
4 affected components
Dell Emc Secure Connect Gateway=3.52.10.08
Dell Emc Secure Connect Gateway=5.00.00.10
Dell Secure Connect Gateway=3.52.10.08
Dell Secure Connect Gateway=5.00.00.10
Event History
Nov 20, 2021
CVE Published
via MITRE·01:40 AM
Data Sourced
via MITRE·01:40 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-36340?
CVE-2021-36340 is classified as a sensitive information disclosure vulnerability.
2
How do I fix CVE-2021-36340?
To fix CVE-2021-36340, upgrade to Dell EMC SCG version 5.00.00.11 or later.
3
Who is affected by CVE-2021-36340?
CVE-2021-36340 affects users running Dell EMC SCG 5.00.00.10 and earlier versions.
4
What type of attack does CVE-2021-36340 enable?
CVE-2021-36340 enables a local malicious user to read sensitive information.
5
What products are impacted by CVE-2021-36340?
The impacted product by CVE-2021-36340 is Dell EMC Secure Connect Gateway versions 3.52.10.08 and 5.00.00.10 and earlier.