CVE-2026-78018: Medium severity Dell Secure Connect Gateway (SCG) Policy Manager vulnerability
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Initialization of a Resource with an Insecure Default vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16
Event History
Frequently Asked Questions
Which deployments are affected?
Dell Secure Connect Gateway (SCG) Policy Manager versions earlier than 5.34.00.16 are affected.
What access does an attacker need?
Exploitation requires local access and low-privileged access. The attack complexity is rated high, and no user interaction is required.
What is the impact if exploitation succeeds?
Successful exploitation could lead to information disclosure. The provided severity vector also indicates high confidentiality and integrity impact, with no availability impact.