{"id":"CVE-2026-79947","title":"Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability","summary":"Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low pr…","severity":"medium","cvss":5.5,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","cwe":["CWE-89"],"vendor":"dell","product":"secure_connect_gateway","affected":["secure_connect_gateway < 5.36.00.00","secure_connect_gateway < 5.36.00.16"],"patched":["secure_connect_gateway 5.36.00.16"],"published":"2026-09-09","updated":"2026-09-09","sourceUpdated":"2026-09-09T19:52:56.620","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-79947","references":[{"url":"https://www.dell.com/support/kbdoc/en-in/000503426/dsa-2026-382-security-update-for-dell-secure-connect-gateway-virtual-edition-multiple-vulnerabilities","label":"security_alert@emc.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-09T17:01:27.501105Z"},"ingestedAt":"2026-09-13T05:30:02.402Z","epss":0.00764,"epssPercentile":0.53474,"slug":"CVE-2026-79947","body":"## Overview\n\nDell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to script injection.\n\n## Affected\n\n- `secure_connect_gateway < 5.36.00.00`\n- `secure_connect_gateway < 5.36.00.16`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `secure_connect_gateway 5.36.00.16`","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":30.3,"likelihood":0.2,"exploitation":0,"ransomware":0},"changes":[]}