Vulnerabilities > Dell > Secure Connect Gateway

DATE CVE VULNERABILITY TITLE RISK
2024-10-18 CVE-2024-47241 Improper Certificate Validation vulnerability in Dell Secure Connect Gateway 5.24.00.14
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains an Improper Certificate Validation vulnerability.
network
low complexity
dell CWE-295
8.1
2024-10-18 CVE-2024-48016 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Secure Connect Gateway 5.24.00.14
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken or Risky Cryptographic Algorithm vulnerability.
network
low complexity
dell CWE-327
8.8
2024-10-18 CVE-2024-47240 Incorrect Default Permissions vulnerability in Dell Secure Connect Gateway 5.24.00.14
Dell Secure Connect Gateway (SCG) 5.24 contains an Incorrect Default Permissions vulnerability.
network
low complexity
dell CWE-276
6.3
2024-06-13 CVE-2024-28965 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal enable REST API (if enabled by Admin user from UI).
network
low complexity
dell
5.4
2024-06-13 CVE-2024-28966 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal update REST API (if enabled by Admin user from UI).
network
low complexity
dell
5.4
2024-06-13 CVE-2024-28967 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal maintenance REST API (if enabled by Admin user from UI).
network
low complexity
dell
5.4
2024-06-13 CVE-2024-28968 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for internal email and collection settings REST APIs (if enabled by Admin user from UI).
network
low complexity
dell
5.4
2024-06-13 CVE-2024-28969 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal update REST API (if enabled by Admin user from UI).
network
low complexity
dell
4.3
2024-06-13 CVE-2024-29168 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API.
network
low complexity
dell
8.8
2024-03-01 CVE-2024-24903 Unspecified vulnerability in Dell Secure Connect Gateway
Dell Secure Connect Gateway (SCG) Policy Manager, version 5.10+, contain a weak password recovery mechanism for forgotten passwords.
low complexity
dell
8.0