Sceawere
Vulnerability Detail
CVE-2026-78025UPDATED Verified Sceawere Triage Sources: NVD / CISA KEV
Dell SCG Missing Authentication Vulnerability
Vulnerability Metadata
- Severity
- High
- Score / CVSS
- 7.5
- Creation Date
- 3h ago
- Vendor
- Dell
- Product
- Secure Connect Gateway (SCG) Policy Manager
- Attack Type
- CWE-306: Missing Authentication for Critical Function
- Vector String
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Attack Complexity
- LOW
Narrative and Response
Description
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure, Protection mechanism bypass, and Unauthorized access.
Executive Summary
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.
Technical Details
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.
Mitigations
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.
References
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.
Additional Metadata
{
"score": "7.5",
"pubDate": "2026-10-09T10:16:38.707Z",
"pubdate": "2026-10-09T10:16:38.707Z",
"executiveSummary": "Dell Secure Connect Gateway (SCG) Policy Manager versions prior to 5.34.00.16 are susceptible to a Missing Authentication for Critical Function vulnerability.\nThis flaw allows unauthenticated remote attackers to bypass security controls and access protected administrative or policy management functions.\nThe vulnerability represents a significant security risk, as successful exploitation enables unauthorized access to sensitive system configurations and information disclosure.\nAttackers do not require valid credentials to initiate an exploit, provided they have network reachability to the vulnerable interface.\nThe impact includes the potential for full compromise of the application's policy management layer, necessitating immediate remediation to maintain the integrity and confidentiality of the gateway environment.",
"technicalDetails": "The vulnerability originates from a failure to implement mandatory authentication checks within the Policy Manager component of Dell Secure Connect Gateway (SCG). Specifically, critical API endpoints or administrative functions designed to govern policy enforcement are exposed without requiring a valid session token or administrative identity verification.\nThe root cause is identified as an improper access control implementation where specific business logic functions do not validate the caller's authentication state. Because these functions are exposed via the network stack without the requisite security gatekeeping, an unauthenticated remote actor can interact with these endpoints directly.\nThe attack flow commences when an external actor identifies the exposed administrative interfaces associated with the SCG Policy Manager. By transmitting specially crafted requests directly to these unprotected endpoints, the attacker bypasses the authentication workflow that is intended to restrict access to authorized administrators. Since the underlying service logic assumes all incoming requests are pre-authenticated, it processes the unauthorized requests, granting the attacker the ability to read internal data or manipulate policy configurations.\nThe scope of exploitation is broad due to the lack of privilege requirements. An attacker requires only network access to the target gateway to facilitate the request. Because the system fails to enforce identity verification at the function level, the authentication bypass effectively grants the attacker the same operational visibility and control as a legitimate authenticated session, depending on the scope of the specific functions exposed.\nAffected versions include all releases of Dell Secure Connect Gateway (SCG) Policy Manager prior to 5.34.00.16. The post-exploitation impact includes information disclosure, where an attacker may retrieve internal configuration data or metadata, and a protection mechanism bypass, which compromises the intended security posture of the gateway. By manipulating these policies, an attacker could potentially alter how the gateway interacts with the wider infrastructure, leading to unauthorized access and broader security degradation."
}