Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-61410

Quick assessment

Affected
Dell Secure Connect Gateway 5.0 - Application
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Dell SCG 5.0 Appliance 版本中,5.36.00.16 之前的版本,以及 Dell SCG 5.0 Application 版本中,5.36.00.00 之前的版本,存在“缺少授权(Missing Authorization)”漏洞。一个拥有远程访问权限的未认证攻击者可能利用该漏洞,从而导致远程代码执行(Remote Code Execution)。由于该漏洞允许攻击者通过向应用发送精心构造的请求,绕过系统对代码执行的既定限制,从而在目标系统上远程执行命令,因此该漏洞被评定为严重(Critica

CVSS 9.4 · Critical

Affected Version Matrix 2

VendorProduct Version RangeStatus
Dell Secure Connect Gateway 5.0 - Appliance < 5.36.00.16 or later affected
Dell Secure Connect Gateway 5.0 - Application < 5.36.00.00 or later affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-61410

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authorization vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution. This vulnerability is considered critical because it allows an attacker to execute commands remotely on a target system by sending a specially crafted request to the application, bypassing intended restrictions on code execution.Dell recommends customers to upgrade at the earliest opportunity.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Source: CVE Program / CVE List V5
Vulnerability Type
授权机制缺失
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Dell Secure Connect Gateway 5.0 - Application 0 ~ 5.36.00.00 or later -
Dell Secure Connect Gateway 5.0 - Appliance 0 ~ 5.36.00.16 or later -

II. Public POCs for CVE-2026-61410

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-61410

登录查看更多情报信息。

Same Patch Batch · Dell · 2026-09-07 · 36 CVEs total

CVE-2026-80238 9.3 CRITICAL Dell SCG 5.0 特权限执行漏洞
CVE-2026-79645 8.2 HIGH Dell SCG 5.0 关键功能认证缺失漏洞
CVE-2026-80132 8.1 HIGH Dell SCG 5.0 <5.36.00.16 关键功能认证缺失
CVE-2026-80166 7.8 HIGH Dell SCG 5.0 权限管理不当致提权
CVE-2026-80134 7.7 HIGH Dell SCG 5.0硬编码凭据漏洞
CVE-2026-79639 7.6 HIGH Dell SCG 5.0 证书验证漏洞
CVE-2026-80135 7.5 HIGH Dell SCG 5.0异常处理漏洞致防护绕过
CVE-2026-78480 7.5 HIGH Dell SCG 5.0 缺失关键功能认证漏洞
CVE-2026-80133 7.4 HIGH Dell SCG 5.0 低版本存在相对路径遍历漏洞
CVE-2026-80164 7.4 HIGH Dell SCG 5.0证书验证不当漏洞
CVE-2026-80131 7.4 HIGH Dell SCG 5.0 路径遍历导致远程代码执行
CVE-2026-79644 7.4 HIGH Dell SCG 5.0证书验证不当漏洞
CVE-2026-61409 7.3 HIGH Dell SCG 5.36前 OS命令注入致远程执行
CVE-2026-79643 7.3 HIGH Dell SCG 5.0低版本比较运算符使用错误漏洞
CVE-2026-79691 7.3 HIGH Dell SCG 5.0证书验证不当致防护机制被绕过
CVE-2026-80127 7.2 HIGH Dell SCG 5.0 5.36.00.16前OS命令注入
CVE-2026-80130 7.1 HIGH Dell SCG 5.0 相对路径遍历致远程执行
CVE-2026-78488 6.5 MEDIUM Dell SCG 5.0 远程命令执行漏洞
CVE-2026-80126 6.5 MEDIUM Dell SCG 5.0 特定版本不当锁定漏洞
CVE-2026-80129 6.5 MEDIUM Dell SCG 5.0 路径遍历漏洞

Showing top 20 of 36 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2026-61410

No comments yet


Leave a comment