<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Secure Connect Gateway (Appliance &lt; 5.36.00.16) - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/products/secure-connect-gateway-appliance--5.36.00.16/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Wed, 09 Sep 2026 21:02:07 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/products/secure-connect-gateway-appliance--5.36.00.16/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Command Injection Vulnerability in Dell Secure Connect Gateway</title><link>https://feed.craftedsignal.io/briefs/2026-09-dell-scg-command-injection/</link><pubDate>Wed, 09 Sep 2026 21:02:07 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-dell-scg-command-injection/</guid><description>Dell Secure Connect Gateway (SCG) contains a critical command injection vulnerability allowing unauthenticated remote attackers to perform script injection and potential unauthorized command execution.</description><content:encoded><![CDATA[<p>Dell Secure Connect Gateway (SCG) versions 5.0 are affected by a critical command injection vulnerability identified as CVE-2026-79941. The flaw stems from improper neutralization of special elements used in system commands, enabling an unauthenticated remote attacker to inject malicious scripts. This vulnerability impacts both the SCG Appliance (fixed in version 5.36.00.16) and the SCG Application (fixed in version 5.36.00.00). Successful exploitation could allow an attacker to execute arbitrary commands within the context of the appliance or application, leading to a full compromise of the affected gateway. Given the administrative nature of SCG, which typically manages connectivity for hardware infrastructure, this represents a significant risk to the integrity of the network management environment.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of this vulnerability grants an unauthenticated attacker remote command execution capabilities on the affected Dell SCG appliance or application. This can lead to unauthorized access to management functions, potential exfiltration of sensitive configuration data, or lateral movement within the network from the compromised appliance. The vulnerability carries a CVSS v3.1 base score of 9.8, reflecting its high impact and ease of exploitability via remote, unauthenticated channels.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Upgrade all Dell Secure Connect Gateway (SCG) Appliance instances to version 5.36.00.16 or later.</li>
<li>Upgrade all Dell Secure Connect Gateway (SCG) Application instances to version 5.36.00.00 or later.</li>
<li>Restrict network access to the SCG web management interface to trusted administrative subnets only.</li>
<li>Audit network logs for anomalous HTTP requests targeting the SCG management interface that utilize shell metacharacters or encoded payloads.</li>
</ul>
]]></content:encoded><category domain="severity">critical</category><category domain="type">advisory</category></item></channel></rss>