Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hxw6-3gmw-qjx9

Опубликовано: 30 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Dell Secure Connect Gateway (SCG) 5.0 Application and Appliance version(s) 5.26.00.00 - 5.30.00.00, contain a Relative Path Traversal vulnerability in the SCG exposed for an internal collection download REST API (if this REST API is enabled by Admin user from UI). A low privileged attacker with remote access could potentially exploit this vulnerability, leading to allowing relative path traversal to restricted resources.

Dell Secure Connect Gateway (SCG) 5.0 Application and Appliance version(s) 5.26.00.00 - 5.30.00.00, contain a Relative Path Traversal vulnerability in the SCG exposed for an internal collection download REST API (if this REST API is enabled by Admin user from UI). A low privileged attacker with remote access could potentially exploit this vulnerability, leading to allowing relative path traversal to restricted resources.

EPSS

Процентиль: 19%
0.0006
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-22
CWE-23

Связанные уязвимости

CVSS3: 4.3
nvd
3 месяца назад

Dell Secure Connect Gateway (SCG) 5.0 Application and Appliance version(s) 5.26.00.00 - 5.30.00.00, contain a Relative Path Traversal vulnerability in the SCG exposed for an internal collection download REST API (if this REST API is enabled by Admin user from UI). A low privileged attacker with remote access could potentially exploit this vulnerability, leading to allowing relative path traversal to restricted resources.

EPSS

Процентиль: 19%
0.0006
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-22
CWE-23