{"id":"CVE-2026-79952","title":"Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Encoding or Escaping of Output vulnerability","summary":"Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Encoding or Escaping of Output vulnerability. An unauthenticated attacker with remote access could potent…","severity":"medium","cvss":5.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","cwe":["CWE-116"],"vendor":"dell","product":"secure_connect_gateway","affected":["secure_connect_gateway < 5.36.00.00","secure_connect_gateway < 5.36.00.16"],"patched":["secure_connect_gateway 5.36.00.16"],"published":"2026-09-09","updated":"2026-09-09","sourceUpdated":"2026-09-09T20:06:55.443","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-79952","references":[{"url":"https://www.dell.com/support/kbdoc/en-in/000503426/dsa-2026-382-security-update-for-dell-secure-connect-gateway-virtual-edition-multiple-vulnerabilities","label":"security_alert@emc.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-09T15:33:53.393812Z"},"ingestedAt":"2026-09-10T19:43:43.659Z","epss":0.0021,"epssPercentile":0.11581,"slug":"CVE-2026-79952","body":"## Overview\n\nDell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Encoding or Escaping of Output vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to launch of phishing attacks.\n\n## Affected\n\n- `secure_connect_gateway < 5.36.00.00`\n- `secure_connect_gateway < 5.36.00.16`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `secure_connect_gateway 5.36.00.16`","depth":"sunlit","depthScore":29,"depthScoreParts":{"impact":29.2,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}