Executive brief
Dell Secure Connect Gateway is an appliance and application used to provide secure remote access and connectivity for enterprise networks. The vulnerability allows an unauthenticated attacker to inject malicious LDAP queries, potentially bypassing authentication mechanisms and gaining unauthorized access to the system or extracting sensitive directory information.
Technical details
This vulnerability is an Improper Neutralization of Special Elements used in an LDAP Query (LDAP Injection, CWE-90). The root cause is insufficient input validation when constructing LDAP queries, allowing an unauthenticated attacker to inject malicious LDAP syntax to manipulate directory queries. The attack is network-reachable and requires no authentication or user interaction. An attacker can exploit this to bypass authentication checks, enumerate directory contents, or cause denial of service. Patches are available in SCG 5.0 Appliance version 5.36.00.16 and SCG 5.0 Application version 5.36.00.00.
Affected products
- Dell Secure Connect Gateway 5.0 Appliance prior to 5.36.00.16
- Dell Secure Connect Gateway 5.0 Application prior to 5.36.00.00
Timeline
- 2026-09-09: disclosed
- patched: Dell SCG 5.0 Appliance 5.36.00.16 and Application 5.36.00.00