CVE-2026-73587: Medium severity Dell Secure Connect Gateway (SCG) Policy Manager vulnerability
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure, Information tampering, and Protection mechanism bypass.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16
Event History
Frequently Asked Questions
Which deployments are affected?
Dell Secure Connect Gateway (SCG) Policy Manager versions earlier than 5.34.00.16 are affected.
Does exploitation require credentials or user interaction?
No credentials or user interaction are required. The attacker must have adjacent network access, and exploitation has high attack complexity.
What could a successful attacker do?
Successful exploitation could lead to information disclosure, information tampering, and bypass of protection mechanisms.