Junglewise Threat Intelligence

CVE-2026-79972: Dell Secure Connect Gateway SQL injection in appliance and application

CVE-2026-79972 · Severity: high · CVSS 7.2 · Published 2026-09-09

Technologies: Dell Secure Connect Gateway 5.0 Application, Dell Secure Connect Gateway 5.0 Appliance. Vendors: Dell.

Executive brief

Dell Secure Connect Gateway (SCG) is a secure remote access appliance and application used to manage and control network connectivity for enterprise systems. CVE-2026-79972 is a SQL injection vulnerability that allows a high-privileged attacker with network access to inject malicious SQL commands, potentially leading to unauthorized data access and system compromise. Exploitation could expose sensitive database information or allow lateral movement within the network infrastructure.

Technical details

CVE-2026-79972 is a SQL injection (CWE-89) vulnerability in Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00. The vulnerability stems from improper neutralization of special elements in SQL commands, allowing an attacker with high privileges and remote network access to inject malicious SQL queries. Successful exploitation leads to unauthorized database access and potential system compromise. The attack vector is network-based, though it requires high-privilege authentication. Patches are available in SCG 5.0 Appliance version 5.36.00.16 and Application version 5.36.00.00 or later.

Affected products

  • Dell Secure Connect Gateway 5.0 Appliance prior to 5.36.00.16
  • Dell Secure Connect Gateway 5.0 Application prior to 5.36.00.00

Timeline

  • 2026-09-09: disclosed: CVE-2026-79972 publicly disclosed
  • 2026-09-09: patched: Security update DSA-2026-382 released with patch versions 5.36.00.16 (Appliance) and 5.36.00.00 (Application)

References

Related threats