CVE-2026-78027: SSRF
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains a Server-Side Request Forgery (SSRF) vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure and Server-side request forgery.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Secure Connect Gateway (SCG) Policy Managerto a version that resolves this vulnerability.Fixed in 5.34.00.16
Event History
Frequently Asked Questions
Who can exploit this vulnerability?
Exploitation requires a high-privileged attacker with remote access to the Dell Secure Connect Gateway Policy Manager. The attack complexity is rated high, and no user interaction is required.
Which deployments are affected?
Dell Secure Connect Gateway Policy Manager versions before 5.34.00.16 are affected. Version 5.34.00.16 or later is needed to address the stated affected-version range.
What is the likely impact if exploitation succeeds?
Successful exploitation could allow server-side request forgery and information disclosure. The provided vector indicates high confidentiality impact, with no stated integrity or availability impact.