Описание
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to command execution.
Уязвимые конфигурации
Конфигурация 1Версия до 5.36.00.00 (исключая)Версия до 5.36.00.16 (исключая)
Одно из
cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:application:*:*:*
cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:virtual:*:*:*
EPSS
Процентиль: 88%
0.03249
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-78
Связанные уязвимости
CVSS3: 6.5
github
17 дней назад
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to command execution.
EPSS
Процентиль: 88%
0.03249
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-78