CVE-2026-78025: High severity Dell Secure Connect Gateway (SCG) Policy Manager vulnerability
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure, Protection mechanism bypass, and Unauthorized access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16
Event History
Frequently Asked Questions
Which deployments are affected?
Dell Secure Connect Gateway (SCG) Policy Manager versions earlier than 5.34.00.16 are affected.
Does exploitation require an account or user interaction?
No. The vulnerability can be exploited by an unauthenticated attacker with remote access, and the supplied vector indicates no user interaction is required.
What could an attacker gain through successful exploitation?
Successful exploitation could lead to information disclosure, protection mechanism bypass, and unauthorized access.