Secure Connect Gateway

Vendor:

First CVE: Nov 20, 2021 · Active for 4 years

23
Total CVEs
More Total CVEs than 96% of tracked products
4.6
Avg CVEs / Year
Higher CVE frequency than 88% of tracked products
6.2
Avg CVSS
Higher Avg CVSS than 29% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Secure Connect Gateway over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 20, 2021
4 years ago
Most Recent CVE
Apr 1, 2026
118 days ago

CVE Severity & Scoring

Secure Connect Gateway23 CVEs
All CVEs353,240 CVEs
LowMediumHigh
Attack Vector
Local3 (13.0%)
Network20 (87.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low20 (87.0%)
High3 (13.0%)
Unknown0 (0.0%)
User Interaction
None21 (91.3%)
Unknown0 (0.0%)
Required2 (8.7%)
Privileges Required
Low18 (78.3%)
High3 (13.0%)
None2 (8.7%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (23 CVEs).

23 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A remote low privileged attacker could potentially exploit thi
Mar 1, 20248.828NONO
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken or Risky Cryptographic Algorithm vulnerability. A low privileged attacker with re
Oct 18, 20248.825NONO
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API. A remote authenticated attacker could potentially explo
Jun 13, 20248.824NONO
Dell Secure Connect Gateway (SCG) 5.0 Appliance and Application version(s) 5.28.00.xx to 5.32.00.xx, contain(s) an Improper Limitation of a Pathname to a Restricted Directory ('Pat
Apr 1, 20267.223NONO
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains an Improper Certificate Validation vulnerability. A low privileged attacker with remote access coul
Oct 18, 20248.123NONO
Dell Secure Connect Gateway (SCG) 5.0 Appliance and Application, version(s) versions 5.26 to 5.30, contain(s) an Execution with Unnecessary Privileges vulnerability. A high privile
Jan 6, 20266.722NONO
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal audit REST API. A remote authenticated attacker could potentially exploi
Jun 13, 20248.121NONO
Dell Secure Connect Gateway (SCG) version 5.14.00.12 contains a broken cryptographic algorithm vulnerability. A remote unauthenticated attacker could potentially exploit this vuln
Feb 17, 20235.921NONO
Dell SCG 5.14 contains an information disclosure vulnerability during the SRS to SCG upgrade path. A remote low privileged malicious user could potentially exploit this vulnerabil
Jun 1, 20236.520NONO
Dell EMC SCG 5.00.00.10 and earlier, contain a sensitive information disclosure vulnerability. A local malicious user may exploit this vulnerability to read sensitive information a
Nov 20, 20215.520NONO

Exploit Exposure

Signals from CVEs in this product scope (23 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (23 CVEs).

Media Mentions

Signals from CVEs in this product scope (23 CVEs).

Top CNAs Publishing CVEs For Secure Connect Gateway

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
5.26.00.2025.70.2%00
5.24.00.1437.70.2%00
5.20.00.1027.00.2%00
5.18.00.2015.30.1%00
5.14.00.1616.50.3%00
5.14.00.1215.90.4%00
5.12.00.1015.90.4%00
5.00.00.1015.50.2%00
3.52.10.0815.50.2%00