CVE-2026-27101

MEDIUM

Dell Secure Connect Gateway < 5.34.00.00 or later - Path Traversal

Title source: rule
STIX 2.1

Description

Dell Secure Connect Gateway (SCG) 5.0 Appliance and Application version(s) 5.28.00.xx to 5.32.00.xx, contain(s) an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A high privileged attacker within the management network could potentially exploit this vulnerability, leading to remote execution.

Scores

CVSS v3 4.7
EPSS 0.0034
EPSS Percentile 57.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-22
Status published
Products (2)
Dell/Secure Connect Gateway < 5.34.00.00 or later
dell/secure_connect_gateway 5.28.00.00 - 5.34.00.00 (2 CPE variants)
Published Apr 01, 2026
Tracked Since Apr 01, 2026