CVE-2026-79639: High severity Dell SCG 5.0 Appliance vulnerability
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell SCG 5.0 Applianceto a version that resolves this vulnerability.Fixed in 5.36.00.16 - Upgrade
Upgrade
Dell SCG 5.0 Applicationto a version that resolves this vulnerability.Fixed in 5.36.00.00
Event History
Frequently Asked Questions
Which deployments are affected?
Dell SCG 5.0 Appliance versions earlier than 5.36.00.16 and Dell SCG 5.0 Application versions earlier than 5.36.00.00 are affected.
Does exploitation require an authenticated account or user interaction?
No. The vulnerability can potentially be exploited by an unauthenticated attacker with remote access, and the provided vector indicates no user interaction is required.
What access must an attacker have to attempt exploitation?
The attacker needs remote network access to the affected Dell SCG 5.0 deployment. The attack vector is adjacent network (AV:A), so exposure depends on whether an attacker can reach the relevant network path.
What is the potential impact if exploitation succeeds?
Successful exploitation could lead to unauthorized access. The supplied severity vector also indicates high confidentiality impact and low integrity and availability impact.