CVE-2026-73594: Medium severity Dell Secure Connect Gateway (SCG) Policy Manager vulnerability
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, Versions prior to 5.36, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure, Information tampering, and Protection mechanism bypass.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16 - Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.36
Event History
Frequently Asked Questions
Which deployments are affected?
Dell Secure Connect Gateway (SCG) Policy Manager versions prior to 5.34.00.16 and versions prior to 5.36 are affected.
What must an attacker be able to do to exploit this issue?
The attacker does not need authentication, but must have adjacent network access and require user interaction. Exploitation is rated high complexity.
What could successful exploitation allow?
Successful exploitation could lead to information disclosure, information tampering, and bypass of protection mechanisms. The reported impact includes high confidentiality and integrity effects, with no availability impact stated.