Home
MEDIUM: 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
Any version before 5.32.00.20
affected
Default status
unaffected
5.26.00 (semver) before 5.32.00
affected
Description
Dell Secure Connect Gateway (SCG) 5.0 Appliance and Application, version(s) versions 5.26 to 5.30, contain(s) an Execution with Unnecessary Privileges vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
Problem types
CWE-250: Execution with Unnecessary Privileges
Product status
Any version before 5.32.00.20
5.26.00 (semver) before 5.32.00
Credits
Dell would like to thank Ahmed Y. Elmogy for reporting this issue.
References
www.dell.com/...security-update-for-multiple-vulnerabilities