CVE-2026-78020: High severity Dell Secure Connect Gateway (SCG) Policy Manager vulnerability
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Denial of service, Information disclosure, and Remote execution.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16
Event History
Frequently Asked Questions
Which deployments are affected?
Dell Secure Connect Gateway (SCG) Policy Manager versions earlier than 5.34.00.16 are affected.
Does exploitation require an account or local access?
No account is required. The vulnerability may be exploited by an unauthenticated attacker with remote access, although user interaction is required and the attack complexity is high.
What could a successful attack achieve?
A successful exploit could result in denial of service, information disclosure, and remote execution.