📦 Secure Connect Gateway

by Dell

🔍 What is Secure Connect Gateway?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-36340

HIGH CVSS 7.8 Nov 20, 2021

Dell EMC Secure Connect Gateway (SCG) versions 5.00.00.10 and earlier contain a sensitive information disclosure vulnerability. A local malicious user can exploit this to read sensitive information st...

CVE-2025-46363

MEDIUM CVSS 4.3 Oct 30, 2025

Dell Secure Connect Gateway (SCG) versions 5.26.00.00 through 5.30.00.00 contain a relative path traversal vulnerability in a REST API endpoint used for internal collection downloads. If this API is e...

CVE-2025-23382

MEDIUM CVSS 5.5 Mar 19, 2025

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions 5.26 expose sensitive system information to unauthorized actors. A high-privileged attacker with remote access can exploit this vulnerability t...

CVE-2024-47241

MEDIUM CVSS 5.5 Oct 18, 2024

Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS versions 5.24 has an improper certificate validation vulnerability. A low-privileged attacker with remote access could exploit this to intercept, ...

CVE-2024-47240

MEDIUM CVSS 5.5 Oct 18, 2024

Dell Secure Connect Gateway 5.24 has incorrect default file permissions that allow local low-privileged attackers to access the file system. This could enable unauthorized data modification and potent...

CVE-2024-28969

MEDIUM CVSS 4.3 Jun 13, 2024

Dell Secure Connect Gateway (SCG) versions before 5.24.00.00 have an improper access control vulnerability in an internal update REST API. A remote low-privileged attacker could exploit this to execut...

CVE-2024-28965

MEDIUM CVSS 5.4 Jun 13, 2024

Dell Secure Connect Gateway (SCG) versions before 5.24.00.00 have an improper access control vulnerability in an internal REST API. A remote low-privileged attacker can exploit this to execute admin-o...

CVE-2024-28967

MEDIUM CVSS 5.4 Jun 13, 2024

Dell Secure Connect Gateway (SCG) versions before 5.24.00.00 have an improper access control vulnerability in an internal maintenance REST API. If an administrator enables this API via the UI, a remot...