Описание
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.
Уязвимые конфигурации
Конфигурация 1Версия до 5.36.00.00 (исключая)Версия до 5.36.00.16 (исключая)
Одно из
cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:application:*:*:*
cpe:2.3:a:dell:secure_connect_gateway:*:*:*:*:virtual:*:*:*
EPSS
Процентиль: 76%
0.01714
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-77
Связанные уязвимости
CVSS3: 5.5
github
9 дней назад
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.
EPSS
Процентиль: 76%
0.01714
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-77