CVE-2026-78023: High severity Dell Secure Connect Gateway (SCG) Policy Manager vulnerability
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Authorization Bypass Through User-Controlled Key vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16
Event History
Frequently Asked Questions
Who can exploit this vulnerability?
A remote attacker with low-privileged access to Dell Secure Connect Gateway Policy Manager could potentially exploit it. No user interaction is required.
Which versions need remediation?
Dell Secure Connect Gateway Policy Manager versions earlier than 5.34.00.16 are affected. Upgrade to version 5.34.00.16 or later.
What is the potential impact of successful exploitation?
Successful exploitation could allow elevation of privileges. The supplied severity vector indicates high confidentiality impact and low integrity impact, with no availability impact indicated.