CVE-2026-61413

6.8

Dell · Secure Connect Gateway (SCG) Policy Manager

Dell Secure Connect Gateway (SCG) Policy Manager contains an improper privilege management vulnerability that allows low-privileged, remote attackers to gain unauthorized access to the system.

Executive summary

A remote, low-privileged attacker can exploit an improper privilege management vulnerability in Dell Secure Connect Gateway (SCG) Policy Manager to gain unauthorized access to the system.

Vulnerability

This vulnerability is classified as improper privilege management (CWE-269), where the application fails to properly enforce access controls, allowing an authenticated user with low privileges to escalate their access level remotely.

Business impact

Successful exploitation of this flaw enables an attacker to gain unauthorized access to the SCG Policy Manager, potentially resulting in the compromise of sensitive data or unauthorized management actions within the gateway. While the CVSS score of 6.8 is categorized as medium, the ability for a remote attacker to bypass privilege restrictions poses a significant risk to the integrity and confidentiality of the gateway infrastructure.

Remediation

Immediate Action: Update Dell Secure Connect Gateway (SCG) Policy Manager to version 5.34.00.16 or later as specified in the vendor security advisory.

Proactive Monitoring: Review system access logs for anomalous behavior, specifically focusing on privilege elevation attempts or unauthorized configuration changes by low-privileged user accounts.

Compensating Controls: Implement strict network access control lists to limit remote access to the SCG Policy Manager interface to only authorized management workstations.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

Organizations utilizing Dell Secure Connect Gateway (SCG) Policy Manager should prioritize the application of the vendor-provided security update to remediate this privilege management flaw. Given the potential for unauthorized access, ensuring that all security patches are applied in accordance with the vendor advisory (DSA-2026-385) is essential to maintain the security posture of the affected infrastructure.

More Dell CVEs all →

History

  1. Analyst report written

Sources