Junglewise Threat Intelligence

CVE-2026-79638: Dell SCG 5.0 XSS via alternate syntax neutralization bypass

CVE-2026-79638 · Severity: medium · CVSS 5.3 · Published 2026-09-09

Technologies: Dell Secure Connect Gateway 5.0 Application, Dell Secure Connect Gateway 5.0 Appliance. Vendors: Dell.

Executive brief

Dell Secure Connect Gateway (SCG) 5.0 is a network access control appliance and application used to manage secure remote connections. A flaw in how the application filters cross-site scripting (XSS) attacks allows an unauthenticated remote attacker to inject malicious scripts, potentially compromising user sessions or stealing sensitive data accessed through the gateway.

Technical details

The vulnerability is an improper neutralization of alternate XSS syntax—the application fails to properly sanitize user input against non-standard XSS payloads. This is a reflected or stored XSS vulnerability where the input validation logic does not account for alternate encoding or syntax variations of JavaScript. An unauthenticated attacker with network access to the SCG interface can craft a specially designed request containing an XSS payload, which bypasses the inadequate input filters. Successful exploitation allows script injection into the application context, enabling session hijacking, credential theft, or malware distribution. Patches are available in SCG 5.0 Appliance 5.36.00.16+ and Application 5.36.00.00+.

Affected products

  • Dell Secure Connect Gateway 5.0 Appliance prior to 5.36.00.16
  • Dell Secure Connect Gateway 5.0 Application prior to 5.36.00.00

Timeline

  • 2026-09-09: disclosed: Published on NVD and Dell advisory DSA-2026-382
  • 2026-09-09: patched: Patches available: SCG 5.0 Appliance 5.36.00.16 and Application 5.36.00.00

References

Related threats