Junglewise Threat Intelligence

CVE-2026-79952: Dell Secure Connect Gateway improper output encoding

CVE-2026-79952 · Severity: medium · CVSS 5.3 · Published 2026-09-09

Technologies: Dell Secure Connect Gateway. Vendors: Dell.

Executive brief

Dell Secure Connect Gateway (SCG) is a network access appliance used to provide secure remote connectivity and gateway services. This vulnerability allows an unauthenticated remote attacker to craft specially formatted requests that bypass output encoding, enabling phishing attacks against users accessing the gateway. An attacker could inject malicious content that appears legitimate to victims, potentially compromising credentials or spreading malware without requiring any authentication.

Technical details

The vulnerability is an improper encoding or escaping of output (CWE-116) in Dell SCG 5.0 that allows an unauthenticated attacker with network access to inject malicious content. The affected component fails to properly escape or encode user-supplied input before rendering it in responses, enabling stored or reflected cross-site scripting (XSS) or phishing attack vectors. The vulnerability requires no authentication or user interaction for initial exploitation. An attacker can craft requests that bypass output validation filters and inject HTML/JavaScript that executes in the context of users accessing the gateway. Patches are available in SCG 5.0 Appliance version 5.36.00.16 and Application version 5.36.00.00 or later.

Affected products

  • Dell Secure Connect Gateway 5.0 Appliance prior to 5.36.00.16; 5.0 Application prior to 5.36.00.00

Timeline

  • 2026-09-09: disclosed: CVE-2026-79952 published

References

Related threats