---
id: CVE-2026-78020
title: >-
  Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to
  5.34.00.16, contains an Improper Certificate Validation vulnerability
summary: >-
  Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to
  5.34.00.16, contains an Improper Certificate Validation vulnerability. An
  unauthenticated attacker with remote access could potentially exploit this
  vulnerability, leadi…
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-295
published: '2026-10-09'
updated: '2026-10-10'
sourceUpdated: '2026-10-10T13:17:32.430'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-78020'
references:
  - url: >-
      https://www.dell.com/support/kbdoc/en-ca/000503592/dsa-2026-385-security-update-for-dell-secure-connect-gateway-policy-manager-multiple-vulnerabilities?msockid=3021cac2195069ed3194ddad186a68f9
    label: security_alert@emc.com
tags:
  - nvd
epss: 0.00179
epssPercentile: 0.06833
ingestedAt: '2026-10-09T09:31:01.009Z'
---

## Overview

Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Denial of service, Information disclosure, and Remote execution.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
