Executive brief
Dell Secure Connect Gateway is a network appliance and application that manages secure remote access for enterprise environments. A vulnerability in input handling allows unauthenticated remote attackers to inject specially crafted escape sequences, which could be used to launch convincing phishing attacks against users. This could lead to credential theft or unauthorized system access.
Technical details
The vulnerability is an Improper Neutralization of Escape, Meta, or Control Sequences (CWE-150 class) affecting Dell SCG 5.0 Appliance and Application. The root cause is insufficient sanitization of user-supplied input, allowing attackers to inject control sequences that bypass intended output encoding. An unauthenticated attacker with network access can exploit this by sending a specially crafted request to the application. The attack vector requires no authentication and no user interaction beyond the attacker crafting the malicious request. The primary impact is the ability to launch phishing attacks by manipulating displayed content. Patches are available: upgrade SCG 5.0 Appliance to version 5.36.00.16 or later, or SCG 5.0 Application to version 5.36.00.00 or later.
Affected products
- Dell Secure Connect Gateway 5.0 Appliance prior to 5.36.00.16
- Dell Secure Connect Gateway 5.0 Application prior to 5.36.00.00
Timeline
- 2026-09-09: disclosed: Published in NVD and Dell advisory DSA-2026-382
- 2026-09-09: patched: Patches released: SCG 5.0 Appliance 5.36.00.16+, SCG 5.0 Application 5.36.00.00+