---
id: CVE-2026-80171
title: >-
  Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0
  Application versions prior to 5.36.00.00, contains an Insufficient Entropy in
  PRNG vulnerability
summary: >-
  Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0
  Application versions prior to 5.36.00.00, contains an Insufficient Entropy in
  PRNG vulnerability. A low privileged attacker with local access could
  potentially exploit …
severity: medium
cvss: 4.7
cvssVector: 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-331
vendor: dell
product: secure_connect_gateway
affected:
  - secure_connect_gateway < 5.36.00.00
  - secure_connect_gateway < 5.36.00.16
patched:
  - secure_connect_gateway 5.36.00.16
published: '2026-09-09'
updated: '2026-09-09'
sourceUpdated: '2026-09-09T18:58:33.943'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-80171'
references:
  - url: >-
      https://www.dell.com/support/kbdoc/en-in/000503426/dsa-2026-382-security-update-for-dell-secure-connect-gateway-virtual-edition-multiple-vulnerabilities
    label: security_alert@emc.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-09T15:49:42.564119Z'
ingestedAt: '2026-09-14T10:21:15.605Z'
epss: 0.00117
epssPercentile: 0.0147
---

## Overview

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insufficient Entropy in PRNG vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges.

## Affected

- `secure_connect_gateway < 5.36.00.00`
- `secure_connect_gateway < 5.36.00.16`

## Remediation

Upgrade past the affected range:

- `secure_connect_gateway 5.36.00.16`
