Dell SCG 5.0 设备版(Appliance)早于 5.36.00.16 的版本,以及 Dell SCG 5.0 应用版(Application)早于 5.36.00.00 的版本,存在“SQL 命令中特殊元素未正确中和”(即 SQL 注入)漏洞。拥有远程访问权限的低权限攻击者可能利用该漏洞,导致未授权的访问。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Dell | Secure Connect Gateway 5.0 - Application | 0 ~ 5.36.00.00 or later | - |
|
| Dell | Secure Connect Gateway 5.0 - Appliance | 0 ~ 5.36.00.16 or later | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-78491 | 8.2 HIGH | Dell SCG 5.0 证书验证不当致未授权访问 |
| CVE-2026-78494 | 7.4 HIGH | Dell SCG 5.0 5.36之前版本证书验证不当 |
| CVE-2026-80122 | 7.3 HIGH | Dell SCG 5.0 证书验证缺陷致未授权访问 |
| CVE-2026-80123 | 7.3 HIGH | Dell SCG 5.0 SSRF致DoS漏洞 |
| CVE-2026-79636 | 7.0 HIGH | Dell SCG 5.0证书主机不匹配漏洞 |
| CVE-2026-80177 | 6.5 MEDIUM | Dell SCG SQL注入漏洞 |
| CVE-2026-79974 | 6.4 MEDIUM | Dell SCG 5.0 特定版本身份认证不当漏洞 |
| CVE-2026-79973 | 6.3 MEDIUM | Dell SCG 5.0 多线程竞争导致拒绝服务 |
| CVE-2026-79967 | 5.6 MEDIUM | Dell SCG 5.0 证书验证不当致防护机制绕过 |
| CVE-2026-80124 | 5.5 MEDIUM | Dell SCG 5.0 日志敏感信息泄露 |
| CVE-2026-80055 | 4.4 MEDIUM | Dell SCG 5.0 旧版存在LDAP注入漏洞 |
| CVE-2026-80175 | 3.3 LOW | Dell SCG 5.0敏感信息暴露至外部可访问目录 |
No comments yet