Description
Dell Secure Connect Gateway (SCG) 5.0 Appliance and Application version(s) 5.28.00.xx to 5.32.00.xx, contain(s) an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A high privileged attacker within the management network could potentially exploit this vulnerability, leading to remote execution.
Problem types
CWE-22: Improper Limitation of a Pathname to a Restricted Directory Path Traversal
Product status
Any version before 5.34.00.00 or later
Credits
Dell would like to thank Ahmed Y. Elmogy for reporting this issue.
References
www.dell.com/...ay-application-and-appliance-vulnerabilities