Junglewise Threat Intelligence

CVE-2026-80127: Dell Secure Connect Gateway OS command injection

CVE-2026-80127 · Severity: high · CVSS 7.2 · Published 2026-09-07

Technologies: Dell Secure Connect Gateway Application, Dell Secure Connect Gateway Appliance. Vendors: Dell.

Executive brief

Dell Secure Connect Gateway (SCG) is a remote access appliance and application used by organizations to control network connections and user access. CVE-2026-80127 is an OS command injection vulnerability that allows a high-privileged attacker with remote access to execute arbitrary system commands, potentially gaining complete control of the affected appliance and escalating privileges. This could lead to unauthorized access to corporate networks and sensitive data.

Technical details

CVE-2026-80127 is an improper neutralization of special elements used in OS commands (OS command injection) vulnerability in Dell SCG versions prior to 5.36.00.16 (Appliance) and 5.36.00.00 (Application). The vulnerability allows a high-privileged attacker with remote network access to inject arbitrary OS commands through insufficiently sanitized user input, leading to elevation of privileges and potential full system compromise. Attack vectors include specially crafted requests to the application that bypass command execution restrictions. Dell has released patched versions (5.36.00.16 for Appliance and 5.36.00.00 for Application) to address this issue.

Affected products

  • Dell Secure Connect Gateway Appliance prior to 5.36.00.16
  • Dell Secure Connect Gateway Application prior to 5.36.00.00

Timeline

  • 2026-09-07: disclosed: Vulnerability disclosed via NVD and Dell Security Advisory DSA-2026-382
  • 2026-09-07: patched: Fixed in Dell SCG Appliance 5.36.00.16 and Application 5.36.00.00

References

Related threats