Sceawere

Vulnerability Detail

CVE-2026-61410UPDATED Verified Sceawere Triage Sources: NVD / CISA KEV

Dell SCG Missing Authorization Vulnerability

Vulnerability Metadata

Severity
Critical
Score / CVSS
9.4
Creation Date
1h ago
Vendor
Dell
Product
Secure Connect Gateway 5.0 - Application
Attack Type
CWE-862: Missing Authorization
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Attack Complexity
LOW

Narrative and Response

Description

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authorization vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution. This vulnerability is considered critical because it allows an attacker to execute commands remotely on a target system by sending a specially crafted request to the application, bypassing intended restrictions on code execution.Dell recommends customers to upgrade at the earliest opportunity.

Executive Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Executive Summary Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Technical Details

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Detailed Technical Analysis Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Mitigations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Remediation & Mitigations Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

References

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Intelligence References Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Additional Metadata

{
  "score": "9.4",
  "pubDate": "2026-09-07T13:20:33.853Z",
  "pubdate": "2026-09-07T13:20:33.853Z",
  "executiveSummary": "This vulnerability, classified as a Missing Authorization flaw, affects Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00.\nThe vulnerability allows an unauthenticated, remote attacker to bypass authorization controls, facilitating unauthorized remote code execution on the target system.\nGiven the critical nature of this flaw, it poses a severe risk to organizational security, as it provides a pathway for complete system compromise without requiring valid credentials.\nExploitation involves sending a specially crafted request to the application, which bypasses intended security restrictions governing code execution.\nThe risk implication includes potential unauthorized access, data exfiltration, and full control over the affected appliance, necessitating immediate remediation via vendor-supplied updates.",
  "technicalDetails": "The vulnerability is rooted in an improper authorization mechanism within the Dell SCG 5.0 application stack, where the system fails to validate the identity and permissions of the requester for specific sensitive functional endpoints.\nBecause the application does not enforce authentication checks for these endpoints, an unauthenticated attacker can invoke administrative or system-level functions that were intended to be protected.\nThe exploitation method involves the delivery of a specially crafted request designed to leverage these unprotected endpoints to facilitate remote code execution (RCE).\nUpon receiving the malicious request, the application fails to verify if the request originated from a trusted source, subsequently processing the input in a manner that leads to arbitrary command execution on the host OS.\nThe attack flow follows a direct vector: 1) The attacker identifies the publicly exposed management interface of the Dell SCG appliance. 2) The attacker sends a crafted request targeted at the vulnerable component, exploiting the missing authorization check. 3) The application, failing to authenticate the request, processes the input as an authorized command. 4) The system executes the embedded payload with the privileges of the application process.\nAffected versions include Dell SCG 5.0 Appliance < 5.36.00.16 and Dell SCG 5.0 Application < 5.36.00.00.\nThe vulnerability is particularly dangerous because it requires zero authentication and can be executed over a network connection, making it highly accessible to remote threat actors.\nPost-exploitation, an attacker can gain persistent access to the appliance, deploy further malware, exfiltrate sensitive configuration data, or pivot to other systems within the internal network segment.\nThe reliance on missing authorization indicates a failure in the application's request processing logic, specifically in the middleware or controller layer where access control headers and user session states are expected to be evaluated before execution proceeds."
}
CVE-2026-61410: Dell SCG Missing Authorization Vulnerability (CRITICAL Severity, CVSS: 9.4) - Sceawere