CVE-2026-71178: Low severity Dell Secure Connect Gateway (SCG) Policy Manager vulnerability
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Use of Non-Canonical URL Paths for Authorization Decisions vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16
Event History
Frequently Asked Questions
Which deployments are affected?
Dell Secure Connect Gateway Policy Manager versions earlier than 5.34.00.16 are affected.
Does exploitation require authentication or user interaction?
No. The vulnerability can potentially be exploited by an unauthenticated attacker with remote access, and no user interaction is required.
What is the potential impact?
Successful exploitation could lead to unauthorized access. The reported impact is limited to integrity; no confidentiality or availability impact is identified.