CVE-2026-78024: SSRF
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains a Server-Side Request Forgery (SSRF) vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure, Protection mechanism bypass, Server-side request forgery, and Unauthorized access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16
Event History
Frequently Asked Questions
Which deployments are affected?
Dell Secure Connect Gateway Policy Manager versions earlier than 5.34.00.16 are affected.
What level of access does an attacker need?
Exploitation requires remote access and high privileges. The attack complexity is rated high and no user interaction is required.
What could successful exploitation allow?
A successful attack could lead to information disclosure, protection mechanism bypass, server-side request forgery, and unauthorized access. Availability impact is rated as none.