{"id":"CVE-2026-78485","title":"Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability","summary":"Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated a…","severity":"high","cvss":7.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","cwe":["CWE-22"],"vendor":"dell","product":"secure_connect_gateway","affected":["secure_connect_gateway < 5.36.00.00","secure_connect_gateway < 5.36.00.16"],"patched":["secure_connect_gateway 5.36.00.16"],"published":"2026-09-09","updated":"2026-09-09","sourceUpdated":"2026-09-09T19:50:48.193","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-78485","references":[{"url":"https://www.dell.com/support/kbdoc/en-in/000503426/dsa-2026-382-security-update-for-dell-secure-connect-gateway-virtual-edition-multiple-vulnerabilities","label":"security_alert@emc.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"yes","technicalImpact":"partial","timestamp":"2026-09-09T12:02:05.857610Z"},"ingestedAt":"2026-09-14T05:53:30.929Z","epss":0.0025,"epssPercentile":0.16605,"slug":"CVE-2026-78485","body":"## Overview\n\nDell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access\n\n## Affected\n\n- `secure_connect_gateway < 5.36.00.00`\n- `secure_connect_gateway < 5.36.00.16`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `secure_connect_gateway 5.36.00.16`","depth":"twilight","depthScore":40,"depthScoreParts":{"impact":40.2,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}