ZeroHour

CVE-2026-78484

large

Local OS Command Injection in Dell Secure Connect Gateway 5.0

CVSS 3.1
7.8 high
EPSS
2%p77
Published
()
Modified
AI analysis

Dell Secure Connect Gateway (SCG) 5.0 Appliance and SCG 5.0 Application contain an OS command injection flaw (CWE-77) in which special elements are improperly neutralized, allowing injected operating-system commands to run. A low-privileged attacker with local access to the appliance or the host running the application can trigger the flaw without user interaction and gain command execution, with high impact on confidentiality, integrity, and availability (CVSS 3.1 score of 7.8). Because the attack vector is local (AV:L), remote network exploitation is not possible, but any compromised low-privileged local account or process on the gateway could escalate to full command execution. Users running SCG 5.0 Appliance versions prior to 5.36.00.16 or SCG 5.0 Application versions prior to 5.36.00.00 are affected. There is currently no known exploitation in the wild, the flaw is not listed in CISA's KEV catalog, and no public proof-of-concept is available.

What to do: Upgrade Dell SCG 5.0 Appliance to 5.36.00.16 or later and SCG 5.0 Application to 5.36.00.00 or later per Dell's security advisory (CNA: Dell EMC). Until patched, restrict local console/SSH access on the gateway to trusted administrators and review the local accounts on the appliance and application host. Check your deployed SCG version in the management interface to confirm whether you fall within the affected ranges.

Affected
Dell Secure Connect Gateway 5.0 Applianceprior to 5.36.00.16
Dell Secure Connect Gateway 5.0 Applicationprior to 5.36.00.00
Estimated exposure
large≈ tens of thousands of enterprise gateway deployments (estimated; no official install-base figures) — Dell does not publish active-install counts, but SCG is typically deployed as a single appliance or application instance per enterprise site to provide SupportAssist connectivity for Dell servers and storage, suggesting deployments…

Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.

Description

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.

Vendors
dell
Products
secure connect gateway
Weakness
CWE-77
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.