CVE-2026-78485: Path Traversal
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell SCG 5.0 Applianceto a version that resolves this vulnerability.Fixed in 5.36.00.16 - Upgrade
Upgrade
Dell SCG 5.0 Applicationto a version that resolves this vulnerability.Fixed in 5.36.00.00
Event History
Frequently Asked Questions
Which deployments need remediation?
Dell SCG 5.0 Appliance versions before 5.36.00.16 and Dell SCG 5.0 Application versions before 5.36.00.00 are affected. Deployments at or above those respective versions are not identified as affected by the provided information.
Does exploitation require an account or user interaction?
No. The vulnerability is described as exploitable by an unauthenticated attacker with remote access, and the vector indicates no privileges or user interaction are required.
What access must an attacker have?
The attacker needs remote network access to the affected Dell SCG 5.0 deployment. The provided information does not identify any additional preconditions.
What is the potential impact?
Successful exploitation could lead to unauthorized access. The severity vector indicates potential low impact to confidentiality, integrity, and availability.