CVE-2025-23382
- EPSS 0.04%
- Published 19.03.2025 15:20:04
- Last modified 20.05.2025 18:01:47
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.26, contain(s) an Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability. A high privileged attacker with remote access could potentially exploit th...
CVE-2025-26475
- EPSS 0.04%
- Published 19.03.2025 15:13:52
- Last modified 20.05.2025 18:01:18
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.26, Enables Live-Restore setting which enhances security by keeping containers running during daemon restarts, reducing attack exposure, preventing accidental misconfigurations, and ...
CVE-2024-48016
- EPSS 0.1%
- Published 18.10.2024 17:15:13
- Last modified 13.12.2024 15:13:14
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken or Risky Cryptographic Algorithm vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to i...
CVE-2024-47241
- EPSS 0.06%
- Published 18.10.2024 17:15:12
- Last modified 13.12.2024 14:37:10
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains an Improper Certificate Validation vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized acce...
CVE-2024-47240
- EPSS 0.06%
- Published 18.10.2024 12:15:02
- Last modified 22.10.2024 15:28:55
Dell Secure Connect Gateway (SCG) 5.24 contains an Incorrect Default Permissions vulnerability. A local attacker with low privileges can access the file system and could potentially exploit this vulnerability to gain write access to unauthorized data...
CVE-2024-29169
- EPSS 1.56%
- Published 13.06.2024 16:15:10
- Last modified 30.09.2025 18:02:10
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal audit REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands...
CVE-2024-29168
- EPSS 1.85%
- Published 13.06.2024 15:15:52
- Last modified 21.11.2024 09:07:42
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL command...
CVE-2024-28969
- EPSS 0.9%
- Published 13.06.2024 15:15:52
- Last modified 21.11.2024 09:07:17
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal update REST API (if enabled by Admin user from UI). A remote low privileged attacker could potentially exploit this vulnerabil...
CVE-2024-28967
- EPSS 1.04%
- Published 13.06.2024 15:15:51
- Last modified 21.11.2024 09:07:17
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal maintenance REST API (if enabled by Admin user from UI). A remote low privileged attacker could potentially exploit this vulne...
CVE-2024-28968
- EPSS 1.04%
- Published 13.06.2024 15:15:51
- Last modified 21.11.2024 09:07:17
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for internal email and collection settings REST APIs (if enabled by Admin user from UI). A remote low privileged attacker could potentially ex...